Accel-Ppp · Accel-Ppp · CVE-2022-0982
**Name of the Vulnerable Software and Affected Versions**
accel-pppd (affected versions not specified)
**Description**
The issue is related to a memory corruption vulnerability in the telnet input char function. This vulnerability occurs because user input cmdline len is copied into a fixed buffer b->buf without any bound checks. As a result, if the server connects with a malicious client, crafted client requests can remotely trigger this vulnerability.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.