Buffer overflow in FreeRADIUS - CVE-2017-10978

 

Buffer overflow in FreeRADIUS - CVE-2017-10978

Published: July 17, 2017 / Updated: July 18, 2017


Vulnerability identifier: #VU7552
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-10978
CWE-ID: CWE-119
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to boundary error in make_secret() function when processing RADIUS packets. A remote unauthenticated attacker can send a specially crafted RADIUS packet and crash the affected server.

Successful exploitation of this vulnerability may result in denial of service attack.


Affected software

FreeRADIUS
Debian Linux
Amazon Linux AMI
Red Hat Enterprise Linux for x86_64
SUSE Linux
Ubuntu
Fedora
freeradius

How to mitigate CVE-2017-10978

Update to version 2.2.10 or 3.0.15.

freeradius - addressed in versions 3.0.15-1.fc25, 3.0.15-1.fc26

External References

Related Security Bulletins