Critical severity9.8NVD Advisory· Published Mar 13, 2026· Updated May 5, 2026
CVE-2026-32746
CVE-2026-32746
Description
telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does not check whether the buffer is full.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- lists.gnu.org/archive/html/bug-inetutils/2026-03/msg00031.htmlnvdExploitVendor Advisory
- www.openwall.com/lists/oss-security/2026/03/14/1nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2026/03/12/4nvdMailing ListThird Party Advisory
News mentions
1- 23rd March – Threat Intelligence ReportCheck Point Research · Mar 23, 2026