Secunia Logo
 
CVE Reference: CVE-2004-0849
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0849

Description:
Integer overflow in the asn_decode_string() function defined in asn1.c in radiusd for GNU Radius 1.1 and 1.2 before 1.2.94, when compiled with the --enable-snmp option, allows remote attackers to cause a denial of service (daemon crash) via certain SNMP requests.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/17391

MLIST
  http://lists.gnu.org/archive/html/info-gnu-radius/2004-09/msg00000.html

IDEFENSE
  http://www.idefense.com/application/poi/display?id=141&type=vulnerabilities


Return to the previous page.