Lucene search

K
osvGoogleOSV:DSA-1145-1
HistoryAug 08, 2006 - 12:00 a.m.

freeradius - several

2006-08-0800:00:00
Google
osv.dev
5

EPSS

0.026

Percentile

90.3%

Several remote vulnerabilities have been discovered in freeradius, a
high-performance RADIUS server, which may lead to SQL injection or denial
of service. The Common Vulnerabilities and Exposures project identifies
the following problems:

  • CVE-2005-4745
    An SQL injection vulnerability has been discovered in the
    rlm_sqlcounter module.
  • CVE-2005-4746
    Multiple buffer overflows have been discovered, allowing denial of
    service.

For the stable distribution (sarge) these problems have been fixed in
version 1.0.2-4sarge3.

For the unstable distribution (sid) these problems have been fixed in
version 1.0.5-1.

We recommend that you upgrade your freeradius packages.