Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper input validation together with an integer overflow in the EAP-TLS protocol implementation in PPPD may cause a crash, information disclosure, or authentication bypass. This implementation is distributed as a patch for PPPD 0.91, and includes the affected eap.c and eap-tls.c files. Configurations that use the `refuse-app` option are unaffected.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PPPD 输入验证错误漏洞
Vulnerability Description
PPPD是一种用于在拨号调制解调器、DSL连接和其它点对点链路上建立互联网链路的协议。 PPPD中的EAP-TLS协议实现存在输入验证漏洞,该漏洞源于程序没有正确的执行身份验证。攻击者可利用该漏洞造成远程客户端崩溃、泄露信息或绕过身份验证。
CVSS Information
N/A
Vulnerability Type
N/A