
CVE-2005-0488: Some telnet clients still leak environment variables https://www.openwall.com/lists/oss-security/2026/03/13/1 Vulnerable: GNU Inetutils 2.7.33 (Debian, Ubuntu, Termux, ...), FreeBSD 16.0-CURRENT, NetBSD 11.0-RC2, Solaris 11.4. By-design partial leakage: OpenBSD 7.8. Abuse via telnet:// URI scheme.
Post summary
The text announces the discovery of CVE‑2005‑0488, detailing affected telnet client versions and the nature of the environment variable leakage, without providing PoC, exploit code, or patch information.
