Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
https://exchange.xforce.ibmcloud.com/vulnerabilities/6875
http://www.redhat.com/support/errata/RHSA-2001-100.html
http://www.redhat.com/support/errata/RHSA-2001-099.html
http://www.debian.org/security/2001/dsa-075
http://www.debian.org/security/2001/dsa-070
http://www.cisco.com/warp/public/707/catos-telrcv-vuln-pub.shtml