Описание
The fr_dhcp_decode function in lib/dhcp.c in FreeRADIUS 2.1.9, in certain non-default builds, does not properly handle the DHCP Relay Agent Information option, which allows remote attackers to cause a denial of service (infinite loop and daemon outage) via a packet that has more than one sub-option. NOTE: some of these details are obtained from third party information.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | pre 2.1 |
| devel | not-affected | 2.1.10+dfsg-2ubuntu2 |
| hardy | not-affected | pre 2.1 |
| jaunty | ignored | end of life |
| karmic | ignored | end of life |
| lucid | not-affected | code not present |
| maverick | ignored | end of life |
| natty | not-affected | 2.1.10+dfsg-2ubuntu2 |
| oneiric | not-affected | 2.1.10+dfsg-2ubuntu2 |
| precise | not-affected | 2.1.10+dfsg-2ubuntu2 |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
The fr_dhcp_decode function in lib/dhcp.c in FreeRADIUS 2.1.9, in certain non-default builds, does not properly handle the DHCP Relay Agent Information option, which allows remote attackers to cause a denial of service (infinite loop and daemon outage) via a packet that has more than one sub-option. NOTE: some of these details are obtained from third party information.
The fr_dhcp_decode function in lib/dhcp.c in FreeRADIUS 2.1.9, in certain non-default builds, does not properly handle the DHCP Relay Agent Information option, which allows remote attackers to cause a denial of service (infinite loop and daemon outage) via a packet that has more than one sub-option. NOTE: some of these details are obtained from third party information.
The fr_dhcp_decode function in lib/dhcp.c in FreeRADIUS 2.1.9, in cert ...
The fr_dhcp_decode function in lib/dhcp.c in FreeRADIUS 2.1.9, in certain non-default builds, does not properly handle the DHCP Relay Agent Information option, which allows remote attackers to cause a denial of service (infinite loop and daemon outage) via a packet that has more than one sub-option. NOTE: some of these details are obtained from third party information.
EPSS
4.3 Medium
CVSS2