Format string vulnerabilities in Livingston/Lucent RADIUS before 2.1.va.1 may allow local or remote attackers to cause a denial of service and possibly execute arbitrary code via format specifiers that are injected into log messages.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Radius | Lucent | 2.1.2 (including) | 2.1.2 (including) |
| Radius | Simon_horms | 2.1_2 (including) | 2.1_2 (including) |