Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2007-0338

Опубликовано: 10 мая 2007
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2007-0338: Moderate: freeradius security update (MODERATE)

[1.0.1-3.RHEL4.5]

  • fixed CVE-2007-2028: EAP-TTLS denial of service Resolves: rhbz#236247

Обновленные пакеты

Oracle Linux 5

Oracle Linux x86_64

freeradius

1.1.3-1.2.el5

freeradius-mysql

1.1.3-1.2.el5

freeradius-postgresql

1.1.3-1.2.el5

freeradius-unixODBC

1.1.3-1.2.el5

Oracle Linux i386

freeradius

1.1.3-1.2.el5

freeradius-mysql

1.1.3-1.2.el5

freeradius-postgresql

1.1.3-1.2.el5

freeradius-unixODBC

1.1.3-1.2.el5

Связанные CVE

Связанные уязвимости

ubuntu
около 18 лет назад

Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.

redhat
около 18 лет назад

Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.

nvd
около 18 лет назад

Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.

debian
около 18 лет назад

Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to ...

github
около 3 лет назад

Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS tunnel connections using malformed Diameter format attributes, which causes the authentication request to be rejected but does not reclaim VALUE_PAIR data structures.