CVE-2017-10987

Priority
Medium
Description
An FR-GV-304 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Buffer
over-read in fr_dhcp_decode_suboptions()" and a denial of service.
References
Bugs
Notes
 sbeattie> v3 only
Assigned-to
mdeslaur
Package
Upstream:released (3.0.15+dfsg-1)
Ubuntu 17.10 (Artful Aardvark):released (3.0.15+dfsg-1ubuntu1)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (v3 only)
Ubuntu Core 15.04:DNE
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (v3 only)
Ubuntu 17.04 (Zesty Zapus):released (3.0.12+dfsg-4ubuntu1.2)
Patches:
Upstream:https://github.com/FreeRADIUS/freeradius-server/commit/19a18bf7c8af649c9e9742fb6a046f6aff639866
More Information

Updated: 2017-08-11 23:55:39 UTC (commit 13081)