10
CVSSv2

CVE-2004-0987

Published: 10/01/2005 Updated: 30/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the process_menu function in yardradius 1.0.20 allows remote malicious users to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

yard radius yard radius 1.0.20

yard radius yard radius 1.0_pre13

yard radius yard radius 1.0_pre14

yard radius yard radius 1.0_pre15

yard radius project yard radius 1.0.16

yard radius yard radius 1.0.17

yard radius yard radius 1.0.18

yard radius yard radius 1.0.19

Vendor Advisories

Max Vozeler noticed that yardradius, the YARD radius authentication and accounting server, contained a stack overflow similar to the one from radiusd which is referenced as CAN-2001-0534 This could lead to the execution of arbitrary code as root For the stable distribution (woody) this problem has been fixed in version 1020-2woody1 For the uns ...