FreeRADIUS EAP-MSCHAPv2 Authentication Bypass Vulnerability
BID:17171
Info
FreeRADIUS EAP-MSCHAPv2 Authentication Bypass Vulnerability
| Bugtraq ID: | 17171 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-1354 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 21 2006 12:00AM |
| Updated: | Jan 25 2007 04:19PM |
| Credit: | Announced by the vendor. |
| Vulnerable: |
Trustix Secure Linux 3.0 Trustix Secure Linux 2.2 SuSE Linux Enterprise Server 9 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Professional 9.2 x86_64 S.u.S.E. Linux Professional 9.2 S.u.S.E. Linux Professional 9.1 x86_64 S.u.S.E. Linux Professional 9.1 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux AS 4 Redhat Enterprise Linux AS 3 Mandriva Linux Mandrake 2006.0 x86_64 Mandriva Linux Mandrake 2006.0 FreeRADIUS FreeRADIUS 1.1 FreeRADIUS FreeRADIUS 1.0.5 FreeRADIUS FreeRADIUS 1.0.4 FreeRADIUS FreeRADIUS 1.0.3 FreeRADIUS FreeRADIUS 1.0.2 FreeRADIUS FreeRADIUS 1.0.1 FreeRADIUS FreeRADIUS 1.0 Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 Debian Linux 3.0 sparc Debian Linux 3.0 s/390 Debian Linux 3.0 ppc Debian Linux 3.0 mipsel Debian Linux 3.0 mips Debian Linux 3.0 m68k Debian Linux 3.0 ia-64 Debian Linux 3.0 ia-32 Debian Linux 3.0 hppa Debian Linux 3.0 arm Debian Linux 3.0 alpha Debian Linux 3.0 |
| Not Vulnerable: |
FreeRADIUS FreeRADIUS 1.1.1 |
Discussion
FreeRADIUS EAP-MSCHAPv2 Authentication Bypass Vulnerability
FreeRADIUS is prone to an authentication-bypass vulnerability. The issue exists in the EAP-MSCHAPv2 state machine. Bypassing authentication could also cause the server to crash.
FreeRADIUS versions from 1.0.0 to 1.1.0 are vulnerable.
FreeRADIUS is prone to an authentication-bypass vulnerability. The issue exists in the EAP-MSCHAPv2 state machine. Bypassing authentication could also cause the server to crash.
FreeRADIUS versions from 1.0.0 to 1.1.0 are vulnerable.
Exploit / POC
FreeRADIUS EAP-MSCHAPv2 Authentication Bypass Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
FreeRADIUS EAP-MSCHAPv2 Authentication Bypass Vulnerability
Solution:
This issue has been addressed in FreeRADIUS 1.1.1.
Please see the references for more information and fixes.
FreeRADIUS FreeRADIUS 1.0
FreeRADIUS FreeRADIUS 1.0.1
FreeRADIUS FreeRADIUS 1.0.2
FreeRADIUS FreeRADIUS 1.0.3
FreeRADIUS FreeRADIUS 1.0.4
FreeRADIUS FreeRADIUS 1.0.5
FreeRADIUS FreeRADIUS 1.1
Trustix Secure Linux 2.2
Trustix Secure Linux 3.0
Solution:
This issue has been addressed in FreeRADIUS 1.1.1.
Please see the references for more information and fixes.
FreeRADIUS FreeRADIUS 1.0
-
FreeRADIUS freeradius-1.1.1.tar.gz
ftp://ftp.freeradius.org/pub/radius/freeradius-1.1.1.tar.gz -
SuSE freeradius-1.0.0-5.8.i586.rpm
SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/freeradius-1.0.0- 5.8.i586.rpm -
SuSE freeradius-1.0.0-5.8.x86_64.rpm
SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/freeradius-1.0. 0-5.8.x86_64.rpm
FreeRADIUS FreeRADIUS 1.0.1
-
FreeRADIUS freeradius-1.1.1.tar.gz
ftp://ftp.freeradius.org/pub/radius/freeradius-1.1.1.tar.gz
FreeRADIUS FreeRADIUS 1.0.2
-
Debian freeradius-dialupadmin_1.0.2-4sarge1_all.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-d ialupadmin_1.0.2-4sarge1_all.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_alpha.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_amd64.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_arm.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_hppa.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_i386.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_ia64.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_m68k.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_mips.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_mipsel.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_powerpc.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_s390.deb -
Debian freeradius-iodbc_1.0.2-4sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-i odbc_1.0.2-4sarge1_sparc.deb -
Debian freeradius-krb5_1.0.2-4sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_alpha.deb -
Debian freeradius-krb5_1.0.2-4sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_amd64.deb -
Debian freeradius-krb5_1.0.2-4sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_arm.deb -
Debian freeradius-krb5_1.0.2-4sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_hppa.deb -
Debian freeradius-krb5_1.0.2-4sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_i386.deb -
Debian freeradius-krb5_1.0.2-4sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_ia64.deb -
Debian freeradius-krb5_1.0.2-4sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_m68k.deb -
Debian freeradius-krb5_1.0.2-4sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_mips.deb -
Debian freeradius-krb5_1.0.2-4sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_mipsel.deb -
Debian freeradius-krb5_1.0.2-4sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_powerpc.deb -
Debian freeradius-krb5_1.0.2-4sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_s390.deb -
Debian freeradius-krb5_1.0.2-4sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-k rb5_1.0.2-4sarge1_sparc.deb -
Debian freeradius-ldap_1.0.2-4sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_alpha.deb -
Debian freeradius-ldap_1.0.2-4sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_amd64.deb -
Debian freeradius-ldap_1.0.2-4sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_arm.deb -
Debian freeradius-ldap_1.0.2-4sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_hppa.deb -
Debian freeradius-ldap_1.0.2-4sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_i386.deb -
Debian freeradius-ldap_1.0.2-4sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_ia64.deb -
Debian freeradius-ldap_1.0.2-4sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_m68k.deb -
Debian freeradius-ldap_1.0.2-4sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_mips.deb -
Debian freeradius-ldap_1.0.2-4sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_mipsel.deb -
Debian freeradius-ldap_1.0.2-4sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_powerpc.deb -
Debian freeradius-ldap_1.0.2-4sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_s390.deb -
Debian freeradius-ldap_1.0.2-4sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-l dap_1.0.2-4sarge1_sparc.deb -
Debian freeradius-mysql_1.0.2-4sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_alpha.deb -
Debian freeradius-mysql_1.0.2-4sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_amd64.deb -
Debian freeradius-mysql_1.0.2-4sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_arm.deb -
Debian freeradius-mysql_1.0.2-4sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_hppa.deb -
Debian freeradius-mysql_1.0.2-4sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_i386.deb -
Debian freeradius-mysql_1.0.2-4sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_ia64.deb -
Debian freeradius-mysql_1.0.2-4sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_m68k.deb -
Debian freeradius-mysql_1.0.2-4sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_mips.deb -
Debian freeradius-mysql_1.0.2-4sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_mipsel.deb -
Debian freeradius-mysql_1.0.2-4sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_powerpc.deb -
Debian freeradius-mysql_1.0.2-4sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius-m ysql_1.0.2-4sarge1_sparc.deb -
Debian freeradius_1.0.2-4sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_alpha.deb -
Debian freeradius_1.0.2-4sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_amd64.deb -
Debian freeradius_1.0.2-4sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_arm.deb -
Debian freeradius_1.0.2-4sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_hppa.deb -
Debian freeradius_1.0.2-4sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_i386.deb -
Debian freeradius_1.0.2-4sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_ia64.deb -
Debian freeradius_1.0.2-4sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_m68k.deb -
Debian freeradius_1.0.2-4sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_mips.deb -
Debian freeradius_1.0.2-4sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_mipsel.deb -
Debian freeradius_1.0.2-4sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_powerpc.deb -
Debian freeradius_1.0.2-4sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/f/freeradius/freeradius_1 .0.2-4sarge1_s390.deb -
FreeRADIUS freeradius-1.1.1.tar.gz
ftp://ftp.freeradius.org/pub/radius/freeradius-1.1.1.tar.gz -
SuSE freeradius-1.0.2-5.7.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/freeradius-1.0.2- 5.7.i586.rpm -
SuSE freeradius-1.0.2-5.7.x86_64.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/freeradius-1.0. 2-5.7.x86_64.rpm
FreeRADIUS FreeRADIUS 1.0.3
-
FreeRADIUS freeradius-1.1.1.tar.gz
ftp://ftp.freeradius.org/pub/radius/freeradius-1.1.1.tar.gz
FreeRADIUS FreeRADIUS 1.0.4
-
FreeRADIUS freeradius-1.1.1.tar.gz
ftp://ftp.freeradius.org/pub/radius/freeradius-1.1.1.tar.gz -
Mandriva freeradius-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva freeradius-1.0.4-2.1.20060mdk.src.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva freeradius-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva lib64freeradius1-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva lib64freeradius1-devel-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva lib64freeradius1-krb5-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva lib64freeradius1-ldap-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva lib64freeradius1-mysql-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva lib64freeradius1-postgresql-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva lib64freeradius1-unixODBC-1.0.4-2.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva libfreeradius1-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva libfreeradius1-devel-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva libfreeradius1-krb5-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva libfreeradius1-ldap-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva libfreeradius1-mysql-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva libfreeradius1-postgresql-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
Mandriva libfreeradius1-unixODBC-1.0.4-2.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://www.mandriva.com/en/download -
SuSE freeradius-1.0.4-4.2.i586.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/freeradius-1.0.4 -4.2.i586.rpm -
SuSE freeradius-1.0.4-4.2.ppc.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/freeradius-1.0.4- 4.2.ppc.rpm -
SuSE freeradius-1.0.4-4.2.x86_64.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/freeradius-1.0 .4-4.2.x86_64.rpm
FreeRADIUS FreeRADIUS 1.0.5
-
FreeRADIUS freeradius-1.1.1.tar.gz
ftp://ftp.freeradius.org/pub/radius/freeradius-1.1.1.tar.gz
FreeRADIUS FreeRADIUS 1.1
-
FreeRADIUS freeradius-1.1.1.tar.gz
ftp://ftp.freeradius.org/pub/radius/freeradius-1.1.1.tar.gz
Trustix Secure Linux 2.2
-
Trustix clamav-0.88.1-1tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix clamav-devel-0.88.1-1tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-cli-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-curl-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-devel-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-domxml-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-exif-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-fcgi-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-gd-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-imap-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-ldap-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-mhash-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-mysql-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-pgsql-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix php4-test-4.4.2-2tr.i586.rpm
TSL 2.2
ftp://ftp.trustix.org/pub/trustix/updates
Trustix Secure Linux 3.0
-
Trustix clamav-0.88.1-1tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix clamav-devel-0.88.1-1tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix freeradius-1.1.1-1tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix freeradius-devel-1.1.1-1tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix freeradius-libs-1.1.1-1tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix freeradius-mysql-1.1.1-1tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix freeradius-postgresql-1.1.1-1tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix kernel-2.6.16.1-2tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix kernel-doc-2.6.16.1-2tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix kernel-headers-2.6.16.1-2tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix kernel-smp-2.6.16.1-2tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix kernel-smp-headers-2.6.16.1-2tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix kernel-source-2.6.16.1-2tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates -
Trustix kernel-utils-2.6.16.1-2tr.i586.rpm
TSL 3.0
ftp://ftp.trustix.org/pub/trustix/updates
References
FreeRADIUS EAP-MSCHAPv2 Authentication Bypass Vulnerability
References:
References:
- FreeRADIUS Homepage (FreeRADIUS)
- FreeRADIUS Vulnerability Notifications (FreeRADIUS)
- RHSA-2006:0271-11 - freeradius security update (RedHat)