Back to search
CVE-2005-0108
Published: Jan 19, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Apache mod_auth_radius 1.5.4 and libpam-radius-auth allow remote malicious RADIUS servers to cause a denial of service (crash) via a RADIUS_REPLY_MESSAGE with a RADIUS attribute length of 1, which leads to a memcpy operation with a -1 length argument.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20050111 Apache mod_auth_radius remote integer overflow
mailing-list
x_refsource_BUGTRAQ
modauthradius-dos(18841)
vdb-entry
x_refsource_XF
14046
third-party-advisory
x_refsource_SECUNIA
1012829
vdb-entry
x_refsource_SECTRACK
DSA-659
vendor-advisory
x_refsource_DEBIAN
13773
third-party-advisory
x_refsource_SECUNIA
12217
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now