The rad_print_request function in logger.c for GNU Radius daemon (radiusd) before 1.2 allows remote attackers to cause a denial of service (crash) via a UDP packet with an Acct-Status-Type attribute without a value and no Acct-Session-Id attribute, which causes a null dereference.
References
Configurations
History
No history.
Information
Published : 2004-03-03 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2004-0131
Mitre link : CVE-2004-0131
CVE.ORG link : CVE-2004-0131
JSON object : View
Products Affected
gnu
- radius
CWE