Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The EAP-PWD module in FreeRADIUS 3.0 through 3.0.8 allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a zero-length EAP-PWD packet.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FreeRADIUS EAP-PWD模块输入验证漏洞
Vulnerability Description
FreeRADIUS是FreeRADIUS Server项目的一套实现了RADIUS协议的软件。该软件主要用于账户认证管理、记账管理和上网账户管理等,并包含有一个Radius服务器、一个BSD协议授权的客户端库、一个PAM库和一个Apache模块。EAP-PWD是用于其中的一个可扩展的身份验证协议模块。 FreeRADIUS 3.0版本至3.0.8版本中的EAP-PWD模块存在安全漏洞。远程攻击者可借助长度为零的EAP-PWD数据包利用该漏洞造成拒绝服务(空指针逆向引用和服务器崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A