Reminds me of the Solaris telnet 0-day from 2007
Reminds me of the Solaris telnet 0-day from 2007
Posted Jan 20, 2026 22:13 UTC (Tue) by dcantrell (subscriber, #75800)Parent article: Remote authentication bypass in telnetd
https://www.kb.cert.org/vuls/id/881872
https://it.slashdot.org/story/07/02/12/1118248/solaris-te...
I could not find where LWN posted about the story. Wayback Machine can be used to dig up the blogs.sun.com posts and other things.
What was interesting in 2007 was that Sun was in the middle of OpenSolaris being a thing so all of the code was open[-ish] at the time too. So when the vulnerability was announced, everyone could go and look at the code. Sun did some PR work on blogs.sun.com and elsewhere to show how quickly the coordinated working up a fix, testing it, and getting updates out to customers. What we didn't get from that was that, hey, maybe all the other OSes should check their telnet code. Oh well.
