An FR-GV-201 issue in FreeRADIUS 2.x before 2.2.10 and 3.x before 3.0.15 allows "Read / write overflow in make_secret()" and a denial of service.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_name": "freeradius", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-common", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-dbg", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-dialupadmin", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-iodbc", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-iodbc-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-krb5", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-krb5-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-ldap", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-ldap-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-mysql", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-mysql-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-postgresql", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-postgresql-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-utils", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "freeradius-utils-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "libfreeradius-dev", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "libfreeradius-dev-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "libfreeradius2", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" }, { "binary_name": "libfreeradius2-dbgsym", "binary_version": "2.1.12+dfsg-1.2ubuntu8.2" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_name": "freeradius", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-common", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-dbg", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-iodbc", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-iodbc-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-krb5", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-krb5-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-ldap", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-ldap-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-mysql", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-mysql-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-postgresql", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-postgresql-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-utils", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "freeradius-utils-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "libfreeradius-dev", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "libfreeradius-dev-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "libfreeradius2", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" }, { "binary_name": "libfreeradius2-dbgsym", "binary_version": "2.2.8+dfsg-0.1ubuntu0.1" } ] }