Lucene search

K
cvelistMitreCVELIST:CVE-2018-11574
HistoryJun 14, 2018 - 8:00 p.m.

CVE-2018-11574

2018-06-1420:00:00
mitre
www.cve.org
3

AI Score

9.6

Confidence

High

EPSS

0.002

Percentile

58.7%

Improper input validation together with an integer overflow in the EAP-TLS protocol implementation in PPPD may cause a crash, information disclosure, or authentication bypass. This implementation is distributed as a patch for PPPD 0.91, and includes the affected eap.c and eap-tls.c files. Configurations that use the refuse-app option are unaffected.

AI Score

9.6

Confidence

High

EPSS

0.002

Percentile

58.7%