Back

CVE-2004-0640

Format string vulnerability in the SSL_set_verify function in telnetd.c for SSLtelnet daemon (SSLtelnetd) 0.13 allows remote attackers to execute arbitrary code.

Published: Aug 6, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
netkit linux_netkit 0.17
netkit linux_netkit 0.17.17
ssltelnetd secure_telnet 0.13.1

GitHub Security Advisory GHSA-fhrm-2hv9-qhh7

Format string vulnerability in the SSL_set_verify function in telnetd.c for SSLtelnet daemon ...

Risk Scores

CVSS Score 10.0 / 10
EPSS Score 4.49%

Top 9% most likely to be exploited

Threat Score 41.3 / 100

Data Sources

NVD EPSS GitHub