Логотип exploitDog
bind:"CVE-2022-41861" OR bind:"CVE-2022-41859" OR bind:"CVE-2022-41860"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-41861" OR bind:"CVE-2022-41859" OR bind:"CVE-2022-41860"

Количество 23

Количество 23

debian логотип

CVE-2022-41859

больше 2 лет назад

In freeradius, the EAP-PWD function compute_password_element() leaks i ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-cmvm-c7qf-pmc5

больше 2 лет назад

In freeradius, the EAP-PWD function compute_password_element() leaks information about the password which allows an attacker to substantially reduce the size of an offline dictionary attack.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-cfm7-f9p7-7m2w

больше 2 лет назад

In freeradius, when an EAP-SIM supplicant sends an unknown SIM option, the server will try to look that option up in the internal dictionaries. This lookup will fail, but the SIM code will not check for that failure. Instead, it will dereference a NULL pointer, and cause the server to crash.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2022-41859

In freeradius, the EAP-PWD function compute_password_element() leaks i ...

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-cmvm-c7qf-pmc5

In freeradius, the EAP-PWD function compute_password_element() leaks information about the password which allows an attacker to substantially reduce the size of an offline dictionary attack.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-cfm7-f9p7-7m2w

In freeradius, when an EAP-SIM supplicant sends an unknown SIM option, the server will try to look that option up in the internal dictionaries. This lookup will fail, but the SIM code will not check for that failure. Instead, it will dereference a NULL pointer, and cause the server to crash.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу