Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Accel Ppp HIGH 7.5
CVE-2021-42870

ACCEL-PPP 1.12.0 has an out-of-bounds read in post_msg when processing a call_clear_request.

Patch available
Fix from $1,950 2022-05-16
Accel Ppp CRITICAL 9.8
CVE-2022-0982

The telnet_input_char function in opt/src/accel-pppd/cli/telnet.c suffers from a memory corruption vulnerability, whereby user input cmdline_len is c…

Fix: after 1.12.0
Fix from $2,300 2022-03-16
Accel Ppp CRITICAL 9.8
CVE-2022-24704

The rad_packet_recv function in opt/src/accel-pppd/radius/packet.c suffers from a buffer overflow vulnerability, whereby user input len is copied int…

Fix: after 1.12.0
Fix from $2,300 2022-02-14
Accel Ppp CRITICAL 9.8
CVE-2022-24705

The rad_packet_recv function in radius/packet.c suffers from a memcpy buffer overflow, resulting in an overly-large recvfrom into a fixed buffer that…

Fix: 1.12.0+
Fix from $2,300 2022-02-14
Accel Ppp HIGH 7.5
CVE-2021-42054

ACCEL-PPP 1.12.0 has an out-of-bounds read in triton_context_schedule if the client exits after authentication.

No fix yet
Fix from $1,950 2021-10-07
Accel Ppp CRITICAL 9.8
CVE-2020-28194

Variable underflow exists in accel-ppp radius/packet.c when receiving a RADIUS vendor-specific attribute with length field is less than 2. It has an …

Fix: 1.12.0-e9d369a+
Fix from $2,300 2021-02-01
Accel Ppp CRITICAL 9.8
CVE-2020-15173

In ACCEL-PPP (an implementation of PPTP/PPPoE/L2TP/SSTP), there is a buffer overflow when receiving an l2tp control packet ith an AVP which type is a…

Fix: after 1.12.0-92-g38b6104
Fix from $2,300 2020-09-09