605
VMScore

CVE-2015-8763

Published: 27/03/2017 Updated: 30/03/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The EAP-PWD module in FreeRADIUS 3.0 up to and including 3.0.8 allows remote malicious users to have unspecified impact via a crafted (1) commit or (2) confirm message, which triggers an out-of-bounds read.

Vulnerable Product Search on Vulmon Subscribe to Product

freeradius freeradius 3.0.0

freeradius freeradius 3.0.5

freeradius freeradius 3.0.7

freeradius freeradius 3.0.1

freeradius freeradius 3.0.2

freeradius freeradius 3.0.3

freeradius freeradius 3.0.4

freeradius freeradius 3.0.6

freeradius freeradius 3.0.8

Vendor Advisories

The EAP-PWD module in FreeRADIUS 30 through 308 allows remote attackers to have unspecified impact via a crafted (1) commit or (2) confirm message, which triggers an out-of-bounds read ...