Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Yard Radius Project Subscribe
Filtered by product Yard Radius
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-1376 12 Ascend, Freeradius, Gnu and 9 more 12 Radius, Freeradius, Radius and 9 more 2018-10-30 7.5 HIGH N/A
Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.
CVE-2001-1377 11 Freeradius, Gnu, Icradius and 8 more 11 Freeradius, Radius, Icradius and 8 more 2018-10-30 5.0 MEDIUM N/A
Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2.
CVE-2004-0987 2 Yard Radius, Yard Radius Project 2 Yard Radius, Yard Radius 2018-10-30 10.0 HIGH N/A
Buffer overflow in the process_menu function in yardradius 1.0.20 allows remote attackers to execute arbitrary code.
CVE-2013-4147 1 Yard Radius Project 1 Yard Radius 2017-08-28 7.5 HIGH N/A
Multiple format string vulnerabilities in Yet Another Radius Daemon (YARD RADIUS) 1.1.2 allow context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in a request in the (1) log_msg function in log.c or (2) version or (3) build_version function in version.c.