|
Family: Debian Local Security Checks --> Category: infos
[DSA598] DSA-598-1 yardradius Vulnerability Scan
Vulnerability Scan Summary DSA-598-1 yardradius
Detailed Explanation for this Vulnerability Test
Max Vozeler noticed that yardradius, the YARD radius authentication
and accounting server, contained a stack overflow similar to the one
from radiusd which is referenced as CVE-2001-0534. This could lead to
the execution of arbitrary code as root.
For the stable distribution (woody) this problem has been fixed in
version 1.0.20-2woody1.
For the unstable distribution (sid) this problem has been fixed in
version 1.0.20-15.
We recommend that you upgrade your yardradius package immediately.
Solution : http://www.debian.org/security/2004/dsa-598
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|