Описание
ELSA-2007-0338: Moderate: freeradius security update (MODERATE)
[1.0.1-3.RHEL4.5]
- fixed CVE-2007-2028: EAP-TTLS denial of service Resolves: rhbz#236247
Обновленные пакеты
Oracle Linux 5
Oracle Linux x86_64
freeradius
1.1.3-1.2.el5
freeradius-mysql
1.1.3-1.2.el5
freeradius-postgresql
1.1.3-1.2.el5
freeradius-unixODBC
1.1.3-1.2.el5
Oracle Linux i386
freeradius
1.1.3-1.2.el5
freeradius-mysql
1.1.3-1.2.el5
freeradius-postgresql
1.1.3-1.2.el5
freeradius-unixODBC
1.1.3-1.2.el5
Связанные CVE
Связанные уязвимости
Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.
Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.
Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.
Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to ...
Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.