Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 508
Alerts This Week
Warning Icon 1 508

Debian Wheezy DLA-1064-1 High: FreeRADIUS Memory Handling Issue

debian lts
Calendar Grey August 25, 2017
Scroller Debian Lts
Enhancement for FreeRADIUS addresses memory management vulnerabilities that could expose Debian systems to external threats.
Guido Vranken discovered that FreeRADIUS, an open source implementation of RADIUS, the IETF protocol for AAA (Authorisation, Authentication, and Accounting), did not properly handl...

Summary

For Debian 7 "Wheezy", these problems have been fixed in version
2.1.12+dfsg-1.2+deb7u2.

We recommend that you upgrade your freeradius packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
important
Lowest
Low
Medium
High
Critical

Package: freeradius
Version: 2.1.12+dfsg-1.2+deb7u2
CVE ID: CVE-2017-10978 CVE-2017-10979 CVE-2017-10980
Debian Bug: 868765

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.