PT-2019-4956 · Freeradius+5 · Freeradius+5

Laura Pardo

·

Published

2019-04-03

·

Updated

2020-04-23

·

CVE-2019-11235

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions FreeRADIUS (affected versions not specified)
Description The issue is related to insufficient authentication data validation in the FreeRADIUS server. It allows a remote attacker to gain unauthorized access to protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficient Verification of Data Authenticity

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-1496
BDU:2020-01576
CESA-2019_1131
CESA-2019_1142
CVE-2019-11235
MGASA-2019-0176
OPENSUSE-SU-2019:1346-1
OPENSUSE-SU-2019_1346-1
OPENSUSE-SU-2019_1394-1
OPENSUSE-SU-2020:0542-1
OPENSUSE-SU-2020_0542-1
RHSA-2019:1131
RHSA-2019:1142
RHSA-2019_1131
RHSA-2019_1142
SUSE-SU-2019:1039-1
SUSE-SU-2019:1086-1
SUSE-SU-2019:1181-1
USN-3954-1

Affected Products

Alt Linux
Centos
Freeradius
Red Hat
Suse
Ubuntu