Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-3984

Опубликовано: 06 окт. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-3984: freeradius security and bug fix update (MODERATE)

[3.0.13-15]

  • Fixes EAP-PWD: DoS issues due to multithreaded BN_CTX access Resolves: bz#1818808

    [3.0.13-14

  • Fixes receiving of multiple RADIUS packets under load Resolves: bz#1630684

[3.0.13-13]

  • Fixes logging of cleartext pap password Resolves: bz#1677435

[3.0.13-12]

  • Fixes paircompare with attribute references and expansions Resolves: bz#1592741

[3.0.13-11]

  • Fixes logrotate, EAP-PWD vulnerability Resolves: bz#1719368 privilege escalation due to insecure logrotate configuration Resolves: bz#1751796 eap-pwd: Information leak due to aborting when needing more than 10 iterations

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

freeradius

3.0.13-15.el7

freeradius-devel

3.0.13-15.el7

freeradius-doc

3.0.13-15.el7

freeradius-krb5

3.0.13-15.el7

freeradius-ldap

3.0.13-15.el7

freeradius-mysql

3.0.13-15.el7

freeradius-perl

3.0.13-15.el7

freeradius-postgresql

3.0.13-15.el7

freeradius-python

3.0.13-15.el7

freeradius-sqlite

3.0.13-15.el7

freeradius-unixODBC

3.0.13-15.el7

freeradius-utils

3.0.13-15.el7

Oracle Linux x86_64

freeradius

3.0.13-15.el7

freeradius-devel

3.0.13-15.el7

freeradius-doc

3.0.13-15.el7

freeradius-krb5

3.0.13-15.el7

freeradius-ldap

3.0.13-15.el7

freeradius-mysql

3.0.13-15.el7

freeradius-perl

3.0.13-15.el7

freeradius-postgresql

3.0.13-15.el7

freeradius-python

3.0.13-15.el7

freeradius-sqlite

3.0.13-15.el7

freeradius-unixODBC

3.0.13-15.el7

freeradius-utils

3.0.13-15.el7

Связанные уязвимости

suse-cvrf
больше 5 лет назад

Security update for freeradius-server

suse-cvrf
больше 5 лет назад

Security update for freeradius-server

suse-cvrf
больше 5 лет назад

Security update for freeradius-server

suse-cvrf
больше 5 лет назад

Security update for freeradius-server

suse-cvrf
больше 5 лет назад

Security update for freeradius-server