Lucene search

K
cve[email protected]CVE-2001-1376
HistoryJun 11, 2002 - 4:00 a.m.

CVE-2001-1376

2002-06-1104:00:00
web.nvd.nist.gov
27
cve-2001-1376
buffer overflow
radius
denial of service
remote code execution
nvd.

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

High

0.037 Low

EPSS

Percentile

91.8%

Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.

Affected configurations

NVD
Node
ascendradiusMatch1.16
OR
freeradiusfreeradiusMatch0.2
OR
freeradiusfreeradiusMatch0.3
OR
gnuradiusMatch0.92.1
OR
gnuradiusMatch0.93
OR
gnuradiusMatch0.94
OR
gnuradiusMatch0.95
OR
icradiusicradiusMatch0.14
OR
icradiusicradiusMatch0.15
OR
icradiusicradiusMatch0.16
OR
icradiusicradiusMatch0.17
OR
icradiusicradiusMatch0.17b
OR
icradiusicradiusMatch0.18
OR
icradiusicradiusMatch0.18.1
OR
livingstonradiusMatch2.0
OR
livingstonradiusMatch2.0.1
OR
livingstonradiusMatch2.1
OR
lucentradiusMatch2.0
OR
lucentradiusMatch2.0.1
OR
lucentradiusMatch2.1
OR
miquel_van_smoorenburg_cistronradiusMatch1.6.1
OR
miquel_van_smoorenburg_cistronradiusMatch1.6.2
OR
miquel_van_smoorenburg_cistronradiusMatch1.6.3
OR
miquel_van_smoorenburg_cistronradiusMatch1.6.4
OR
miquel_van_smoorenburg_cistronradiusMatch1.6.5
OR
miquel_van_smoorenburg_cistronradiusMatch1.6_.0
OR
openradiusopenradiusMatch0.8
OR
openradiusopenradiusMatch0.9
OR
openradiusopenradiusMatch0.9.1
OR
openradiusopenradiusMatch0.9.2
OR
openradiusopenradiusMatch0.9.3
OR
radiusclientradiusclientMatch0.3.1
OR
xtradiusxtradiusMatch1.1_pre1
OR
yard_radiusyard_radiusMatch1.0.17
OR
yard_radiusyard_radiusMatch1.0.18
OR
yard_radiusyard_radiusMatch1.0.19
OR
yard_radiusyard_radiusMatch1.0_pre13
OR
yard_radiusyard_radiusMatch1.0_pre14
OR
yard_radiusyard_radiusMatch1.0_pre15
OR
yard_radius_projectyard_radiusMatch1.0.16

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

High

0.037 Low

EPSS

Percentile

91.8%

Related for CVE-2001-1376