FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (server crash) by sending an Ascend-Send-Secret attribute without the required leading packet.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Freeradius | Freeradius | * | 1.0.1 (including) |
Red Hat Enterprise Linux 3 | RedHat | freeradius-0:1.0.1-1.RHEL3 | * |
Freeradius | Ubuntu | dapper | * |
Freeradius | Ubuntu | devel | * |
Freeradius | Ubuntu | edgy | * |
Freeradius | Ubuntu | feisty | * |