Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-10982

Опубликовано: 17 июл. 2017
Источник: debian
EPSS Низкий

Описание

An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Buffer over-read in fr_dhcp_decode_options()" and a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
freeradiusfixed3.0.12+dfsg-3package
freeradiusfixed2.2.5+dfsg-0.2+deb8u1jessiepackage

Примечания

  • http://freeradius.org/security/fuzzer-2017.html#FR-GV-205

  • https://github.com/FreeRADIUS/freeradius-server/commit/10b6de9345c9e0d9d4d5e0426fa5c3d68d702875

  • Mark as fixed in 3.0.12+dfsg-3 the first 3.x version in unstable

  • This is not fully technically correct, the issue affects only the 2.x

  • series but not 3.x.

EPSS

Процентиль: 80%
0.0142
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Buffer over-read in fr_dhcp_decode_options()" and a denial of service.

CVSS3: 5.9
redhat
больше 8 лет назад

An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Buffer over-read in fr_dhcp_decode_options()" and a denial of service.

CVSS3: 7.5
nvd
больше 8 лет назад

An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Buffer over-read in fr_dhcp_decode_options()" and a denial of service.

CVSS3: 7.5
github
больше 3 лет назад

An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Buffer over-read in fr_dhcp_decode_options()" and a denial of service.

suse-cvrf
около 8 лет назад

Security update for freeradius-server

EPSS

Процентиль: 80%
0.0142
Низкий