Vulnerability index

Browse CVEs

37 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Freeradius CRITICAL 9.0
CVE-2024-3596EPSS 15%

RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, Access-Reject,…

Fix: 3.0.27+
Fix from $2,300 2024-07-09
Freeradius HIGH 7.5
CVE-2022-41859

In freeradius, the EAP-PWD function compute_password_element() leaks information about the password which allows an attacker to substantially reduce …

Fix: 3.0.0+
Fix from $1,950 2023-01-17
Freeradius HIGH 7.5
CVE-2022-41860

In freeradius, when an EAP-SIM supplicant sends an unknown SIM option, the server will try to look that option up in the internal dictionaries. This …

Fix: after 3.0.25
Fix from $1,950 2023-01-17
Freeradius MEDIUM 6.5
CVE-2022-41861

A flaw was found in freeradius. A malicious RADIUS client or home server can send a malformed abinary attribute which can cause the server to crash.

Fix: after 3.0.25
Fix from $1,600 2023-01-17
Freeradius HIGH 7.5
CVE-2019-17185

In FreeRADIUS 3.0.x before 3.0.20, the EAP-pwd module used a global OpenSSL BN_CTX instance to handle all handshakes. This mean multiple threads use …

Fix: 3.0.20+
Fix from $1,950 2020-03-21
Freeradius CRITICAL 9.8
CVE-2017-10979EPSS 7%

An FR-GV-202 issue in FreeRADIUS 2.x before 2.2.10 allows "Write overflow in rad_coalesce()" - this allows remote attackers to cause a denial of serv…

Patch available
Fix from $2,300 2017-07-17
Freeradius CRITICAL 9.8
CVE-2017-10984EPSS 6%

An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of ser…

Patch available
Fix from $2,300 2017-07-17
Freeradius HIGH 7.5
CVE-2017-10980

An FR-GV-203 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Memory leak in decode_tlv()" and a denial of service.

Patch available
Fix from $1,950 2017-07-17
Freeradius HIGH 7.5
CVE-2017-10981

An FR-GV-204 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Memory leak in fr_dhcp_decode()" and a denial of service.

Patch available
Fix from $1,950 2017-07-17
Freeradius HIGH 7.5
CVE-2017-10982

An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Buffer over-read in fr_dhcp_decode_options()" and a denial of service.

Patch available
Fix from $1,950 2017-07-17
Freeradius HIGH 7.5
CVE-2017-10983

An FR-GV-206 issue in FreeRADIUS 2.x before 2.2.10 and 3.x before 3.0.15 allows "DHCP - Read overflow when decoding option 63" and a denial of servic…

Patch available
Fix from $1,950 2017-07-17
Freeradius HIGH 7.5
CVE-2017-10985

An FR-GV-302 issue in FreeRADIUS 3.x before 3.0.15 allows "Infinite loop and memory exhaustion with 'concat' attributes" and a denial of service.

Patch available
Fix from $1,950 2017-07-17
Freeradius HIGH 7.5
CVE-2017-10986

An FR-GV-303 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Infinite read in dhcp_attr2vp()" and a denial of service.

Patch available
Fix from $1,950 2017-07-17
Freeradius HIGH 7.5
CVE-2017-10987

An FR-GV-304 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Buffer over-read in fr_dhcp_decode_suboptions()" and a denial of service.

Mitigation only
Fix from $1,950 2017-07-17
Freeradius CRITICAL 9.8
CVE-2017-9148

The TLS session cache in FreeRADIUS 2.1.1 through 2.1.7, 3.0.x before 3.0.14, 3.1.x before 2017-02-04, and 4.0.x before 2017-02-04 fails to reliably …

Mitigation only
Fix from $2,300 2017-05-29
Freeradius HIGH 7.5
CVE-2015-4680

FreeRADIUS 2.2.x before 2.2.8 and 3.0.x before 3.0.9 does not properly check revocation of intermediate CA certificates.

Patch available
Fix from $1,950 2017-04-05
Freeradius HIGH 8.1
CVE-2015-8763

The EAP-PWD module in FreeRADIUS 3.0 through 3.0.8 allows remote attackers to have unspecified impact via a crafted (1) commit or (2) confirm message…

Patch available
Fix from $1,950 2017-03-27
Freeradius HIGH 8.1
CVE-2015-8764

Off-by-one error in the EAP-PWD module in FreeRADIUS 3.0 through 3.0.8, which triggers a buffer overflow.

Patch available
Fix from $1,950 2017-03-27
Freeradius MEDIUM 5.9
CVE-2015-8762

The EAP-PWD module in FreeRADIUS 3.0 through 3.0.8 allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) v…

Patch available
Fix from $1,600 2017-03-27
Freeradius HIGH 7.5
CVE-2014-2015

Stack-based buffer overflow in the normify function in the rlm_pap module (modules/rlm_pap/rlm_pap.c) in FreeRADIUS 2.x, possibly 2.2.3 and earlier, …

Patch available
Fix from $1,950 2014-11-02
Freeradius MEDIUM 6.0
CVE-2011-4966

modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expir…

Fix: after 2.2.0
Fix from $1,600 2013-03-12
Freeradius MEDIUM 6.8
CVE-2012-3547EPSS 6%

Stack-based buffer overflow in the cbtls_verify function in FreeRADIUS 2.1.10 through 2.1.12, when using TLS-based EAP methods, allows remote attacke…

Mitigation only
Fix from $1,600 2012-09-18
Freeradius MEDIUM 5.8
CVE-2011-2701

The ocsp_check function in rlm_eap_tls.c in FreeRADIUS 2.1.11, when OCSP is enabled, does not properly parse replies from OCSP responders, which allo…

Patch available
Fix from $1,600 2011-08-04
Freeradius MEDIUM 5.0
CVE-2009-3111EPSS 11%

The rad_decode function in FreeRADIUS before 1.1.8 allows remote attackers to cause a denial of service (radiusd crash) via zero-length Tunnel-Passwo…

Fix: after 1.1.7
Fix from $1,600 2009-09-09
Freeradius HIGH 7.2
CVE-2008-4474

freeradius-dialupadmin in freeradius 2.0.4 allows local users to overwrite arbitrary files via a symlink attack on temporary files in (1) backup_rada…

Mitigation only
Fix from $1,950 2008-10-07
Freeradius MEDIUM 5.0
CVE-2007-2028

Memory leak in freeRADIUS 1.1.5 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of EAP-TTLS …

Fix: after 1.1.5
Fix from $1,600 2007-04-13
Freeradius MEDIUM 6.6
CVE-2007-0080

Buffer overflow in the SMB_Connect_Server function in FreeRadius 1.1.3 and earlier allows attackers to execute arbitrary code related to the server d…

Fix: after 1.1.3
Fix from $1,600 2007-01-05
Freeradius HIGH 7.5
CVE-2006-1354

Unspecified vulnerability in FreeRADIUS 1.0.0 up to 1.1.0 allows remote attackers to bypass authentication or cause a denial of service (server crash…

Patch available
Fix from $1,950 2006-03-22
Freeradius HIGH 7.8
CVE-2005-4746

Multiple buffer overflows in FreeRADIUS 1.0.3 and 1.0.4 allow remote attackers to cause denial of service (crash) via (1) the rlm_sqlcounter module o…

Patch available
Fix from $1,950 2005-12-31
Freeradius HIGH 7.5
CVE-2005-4745

SQL injection vulnerability in the rlm_sqlcounter module in FreeRADIUS 1.0.3 and 1.0.4 allows remote attackers to execute arbitrary SQL commands via …

Mitigation only
Fix from $1,950 2005-12-31