[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2017:1581 -- centos 7 freeradius

ID: oval:org.secpod.oval:def:204534Date: (C)2017-07-04   (M)2022-10-10
Class: PATCHFamily: unix




FreeRADIUS is a high-performance and highly configurable free Remote Authentication Dial In User Service server, designed to allow centralized authentication and authorization for a network. Security Fix: * An authentication bypass flaw was found in the way the EAP module in FreeRADIUS handled TLS session resumption. A remote unauthenticated attacker could potentially use this flaw to bypass the inner authentication check in FreeRADIUS by resuming an older unauthenticated TLS session

Platform:
CentOS 7
Product:
freeradius
Reference:
CESA-2017:1581
CVE-2017-9148
CVE    1
CVE-2017-9148
CPE    18
cpe:/a:freeradius:freeradius
cpe:/a:freeradius:freeradius:2.1.7
cpe:/a:freeradius:freeradius:2.1.3
cpe:/a:freeradius:freeradius:2.1.4
...

© SecPod Technologies