积极预防 及时发现
快速响应 力保恢复
Remote Authentication Dial In User Service(RADIUS)...
发布时间:2002-03-11 信息来源:管理员

CNCVE编号:CNCVE-20020002 CVE编号: 安全级别:高 漏洞中文描述: Remote Authentication Dial In User Service(RADIUS)服务器可用于对使用RADIUS协议的终端进行认证、授权和统计,基于RFC 2866。它可应用多种操作系统之下。部分RADIUS协议实现中信息摘要计算函数中含有一个远程缓冲区溢出漏洞,攻击者可能获取远程root权限或者进行拒绝服务攻击。在信息摘要计算过程中,一个含有共享机密的格式串在连接接收到的数据包时没有检查目标缓冲区的大小。因此共享机密数据有可能溢出缓冲区,也有可能导致服务器拒绝服务。如果攻击者已知共享机密内容,还可以利用这一信息在受害者系统中以RADIUS服务器或客户端的身份(通常为root)执行任意代码。不过要获取共享机密并不是件容易的事。 漏洞英文描述: The radiusd-cistron package contains a server daemon for the Remote Authentication Dial-In User Server (RADIUS) client/server security protocol. Various vulnerabilities have been found in Cistron RADIUS as well as other RADIUS servers and clients. In versions of Cistron RADIUS 1.6.5 and earlier, malformed packets could be used to gain additional privileges. All users of Cistron RADIUS are advised to upgrade to version 1.6.6, which is not vulnerable to these issues. Pay special attention to the installation instructions in the Solution section as they vary significantly from the usual update method. 漏洞参考: https://www.redhat.com/support/errata/RHSA-2002-030.html 系统类型:其他 漏洞类型:缓冲区溢出