FreeRadius Chap Remote Buffer Overflow Vulnerability
BID:8282
Info
FreeRadius Chap Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 8282 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 25 2003 12:00AM |
| Updated: | Jul 25 2003 12:00AM |
| Credit: | Discovery credited to Masao NISHIKU. |
| Vulnerable: |
FreeRADIUS FreeRADIUS 0.8.1 FreeRADIUS FreeRADIUS 0.8 FreeRADIUS FreeRADIUS 0.5 FreeRADIUS FreeRADIUS 0.4 FreeRADIUS FreeRADIUS 0.3 FreeRADIUS FreeRADIUS 0.2 |
| Not Vulnerable: |
FreeRADIUS FreeRADIUS 0.9 |
Discussion
FreeRadius Chap Remote Buffer Overflow Vulnerability
A problem with FreeRADIUS has been reported when handling CHAP requests. Because of this, an attacker may be able to gain unauthorized access to a system using the vulnerable software.
A problem with FreeRADIUS has been reported when handling CHAP requests. Because of this, an attacker may be able to gain unauthorized access to a system using the vulnerable software.
Solution / Fix
FreeRadius Chap Remote Buffer Overflow Vulnerability
Solution:
This problem has been resolved in version 0.9 of the software.
Conectiva has released advisory CLSA-2003:708 to address this issue.
See referenced advisory for additional information.
FreeRADIUS FreeRADIUS 0.5
Solution:
This problem has been resolved in version 0.9 of the software.
Conectiva has released advisory CLSA-2003:708 to address this issue.
See referenced advisory for additional information.
FreeRADIUS FreeRADIUS 0.5
-
Conectiva freeradius-0.5-332.i586.rpm
ftp://ul.conectiva.com.br/updates/1.0/RPMS.core/freeradius-0.5-332.i58 6.rpm