Total vulnerabilities in the database
FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specific attributes (VSA) that cause a memcpy operation with a -1 argument.
Software | From | Fixed in |
---|---|---|
freeradius / freeradius | 1.0.0 | 1.0.0.x |
freeradius / freeradius | 0.9 | 0.9.x |
freeradius / freeradius | 0.9.2 | 0.9.2.x |
freeradius / freeradius | 0.3 | 0.3.x |
freeradius / freeradius | 0.9.1 | 0.9.1.x |
freeradius / freeradius | 0.4 | 0.4.x |
freeradius / freeradius | 0.8.1 | 0.8.1.x |
freeradius / freeradius | 0.5 | 0.5.x |
freeradius / freeradius | 0.2 | 0.2.x |
freeradius / freeradius | 0.8 | 0.8.x |
freeradius / freeradius | 0.9.3 | 0.9.3.x |
redhat / fedora_core | core_2.0 | core_2.0.x |
redhat / enterprise_linux | 3.0 | 3.0.x |