CVE-2006-1354

Publication date 22 March 2006

Last updated 24 July 2024


Ubuntu priority

Unspecified vulnerability in FreeRADIUS 1.0.0 up to 1.1.0 allows remote attackers to bypass authentication or cause a denial of service (server crash) via “Insufficient input validation” in the EAP-MSCHAPv2 state machine module.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
freeradius 7.10 gutsy
Not affected
7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Fixed 1.1.0-1ubuntu2.1