Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specific attributes (VSA) that cause a memcpy operation with a -1 argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FreeRADIUS 畸形VSA属性拒绝服务攻击
Vulnerability Description
FreeRadius是FreeRADIUS Server项目的一套实现了RADIUS协议的软件。该软件主要用于账户认证管理、记账管理和上网账户管理等,并包含有一个Radius服务器、一个BSD协议授权的客户端库、一个PAM库和一个Apache模块。 FreeRADIUS1.0.1以前版本允许攻击者通过一个畸形的VSA属性所触发得带'-1'参数的memcpy操作来导致一个拒绝服务攻击。
CVSS Information
N/A
Vulnerability Type
N/A