Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2003-0967
Description:rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADIUS string attribute with a tag, which causes memcpy to be called with a -1 length argument, as demonstrated using the Tunnel-Password attribute.
Test IDs: 1.3.6.1.4.1.25623.1.0.66700   1.3.6.1.4.1.25623.1.0.50960   1.3.6.1.4.1.25623.1.0.54503  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2003-0967
Bugtraq: 20031120 Remote DoS in FreeRADIUS, all versions. (Google Search)
http://marc.info/?l=bugtraq&m=106935911101493&w=2
Bugtraq: 20031121 FreeRADIUS 0.9.2 "Tunnel-Password" attribute Handling Vulnerability (Google Search)
http://marc.info/?l=bugtraq&m=106944220426970
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10917
RedHat Security Advisories: RHSA-2003:386
http://www.redhat.com/support/errata/RHSA-2003-386.html




© 1998-2025 E-Soft Inc. All rights reserved.