OSV 1.4.0 · unreviewed · 修改于 2022-02-20 08:00
发布时间
2022-02-15 08:02
GitHub 审查时间
—
NVD 发布时间
2022-02-15 06:15
源文件
advisories/unreviewed/2022/02/GHSA-8hhg-rh8g-2x9h/GHSA-8hhg-rh8g-2x9h.json
The rad_packet_recv function in radius/packet.c suffers from a memcpy buffer overflow, resulting in an overly-large recvfrom into a fixed buffer that causes a buffer overflow and overwrites arbitrary memory. If the server connects with a malicious client, crafted client requests can remotely trigger this vulnerability.
该公告没有提供结构化的受影响软件包信息。