|
|
|
![]() |
Vulnerability Note VU#124454Ethereal crashes when processing malformed RADIUS packetsOverviewEthereal contains a vulnerability in the way it processes Remote Authentication Dial In User Service (RADIUS) packets.I. DescriptionEthereal is a network traffic analysis package. It includes the ability to decode packets containing RADIUS data. There is a vulnerability that causes Ethereal to crash when processing malformed RADIUS packets.II. ImpactA remote, unauthenticated attacker could cause Ethereal to crash.III. SolutionUpgradeUpgrade to version 0.10.3 or later.
References
Ethereal credits Jonathan Heussser for reporting this vulnerability. This document was written by Damon Morda.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||