In freeradius, when an EAP-SIM supplicant sends an unknown SIM option, the server will try to look that option up in the internal dictionaries. This lookup will fail, but the SIM code will not check for that failure. Instead, it will dereference a NULL pointer, and cause the server to crash.
References
Link | Resource |
---|---|
https://github.com/FreeRADIUS/freeradius-server/commit/f1cdbb33ec61c4a64a | Patch Third Party Advisory |
https://freeradius.org/security/ | Patch Vendor Advisory |
Configurations
Information
Published : 2023-01-17 10:15
Updated : 2023-01-24 11:53
NVD link : CVE-2022-41860
Mitre link : CVE-2022-41860
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
freeradius
- freeradius