5

CVE-2004-0960

FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specific attributes (VSA) that cause a memcpy operation with a -1 argument.

Data is provided by the National Vulnerability Database (NVD)
FreeradiusFreeradius Version0.2
FreeradiusFreeradius Version0.3
FreeradiusFreeradius Version0.4
FreeradiusFreeradius Version0.5
FreeradiusFreeradius Version0.8
FreeradiusFreeradius Version0.8.1
FreeradiusFreeradius Version0.9
FreeradiusFreeradius Version0.9.1
FreeradiusFreeradius Version0.9.2
FreeradiusFreeradius Version0.9.3
FreeradiusFreeradius Version1.0.0
RedhatEnterprise Linux Version3.0 Editionadvanced_server
RedhatEnterprise Linux Version3.0 Editionenterprise_server
RedhatFedora Core Versioncore_2.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.64% 0.844
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P