Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-10984

Опубликовано: 17 июл. 2017
Источник: debian
EPSS Средний

Описание

An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
freeradiusfixed3.0.15+dfsg-1package
freeradiusfixed3.0.12+dfsg-5+deb9u1stretchpackage
freeradiusnot-affectedjessiepackage
freeradiusnot-affectedwheezypackage

Примечания

  • http://freeradius.org/security/fuzzer-2017.html#FR-GV-301

  • https://github.com/FreeRADIUS/freeradius-server/commit/931850e5d2f65193520c2d9c9878148c0cdc16a6

  • https://github.com/FreeRADIUS/freeradius-server/commit/4b059296e14b6ab75dc17163077490528a819806

EPSS

Процентиль: 95%
0.19926
Средний

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code.

CVSS3: 8.1
redhat
больше 8 лет назад

An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code.

CVSS3: 9.8
nvd
больше 8 лет назад

An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code.

CVSS3: 9.8
github
больше 3 лет назад

An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code.

suse-cvrf
около 8 лет назад

Security update for freeradius-server

EPSS

Процентиль: 95%
0.19926
Средний