445
VMScore

CVE-2015-4680

Published: 05/04/2017 Updated: 09/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

FreeRADIUS 2.2.x prior to 2.2.8 and 3.0.x prior to 3.0.9 does not properly check revocation of intermediate CA certificates.

Vulnerable Product Search on Vulmon Subscribe to Product

freeradius freeradius 3.0.6

freeradius freeradius 3.0.7

freeradius freeradius 3.0.0

freeradius freeradius 3.0.1

freeradius freeradius 3.0.8

freeradius freeradius 3.0.4

freeradius freeradius 3.0.5

freeradius freeradius 3.0.2

freeradius freeradius 3.0.3

freeradius freeradius 2.2.5

freeradius freeradius 2.2.6

freeradius freeradius 2.2.7

freeradius freeradius 2.2.0

freeradius freeradius 2.2.3

freeradius freeradius 2.2.4

freeradius freeradius 2.2.1

freeradius freeradius 2.2.2

suse linux enterprise software development kit 12

suse linux enterprise server 12

Vendor Advisories

Debian Bug report logs - #789623 freeradius: CVE-2015-4680: insufficent CRL application for intermediate certificates Package: src:freeradius; Maintainer for src:freeradius is Debian FreeRADIUS Packaging Team <pkg-freeradius-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Da ...
FreeRADIUS 22x before 228 and 30x before 309 does not properly check revocation of intermediate CA certificates ...