HomeFreeradiusCVE-2001-1377

CVE-2001-1377

UNKNOWN
5.0CVSS
Published: 2002-03-04
Updated: 2025-04-03
AI Analysis

Description

Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2.

CVSS Metrics

Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Access Vector
network
Access Cmplx
low
Auth
none
Confidentiality
none
Integrity
none
Availability
partial
Weaknesses
NVD-CWE-Other

Metadata

Primary Vendor
FREERADIUS
Published
3/4/2002
Last Modified
4/3/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

freeradius : freeradiusfreeradius : freeradiusgnu : radiusgnu : radiusgnu : radiusgnu : radiusicradius : icradiusicradius : icradiusicradius : icradiusicradius : icradiusicradius : icradiusicradius : icradiusicradius : icradiuslivingston : radiuslivingston : radiuslivingston : radiuslucent : radiuslucent : radiuslucent : radiusmiquel_van_smoorenburg_cistron : radiusmiquel_van_smoorenburg_cistron : radiusmiquel_van_smoorenburg_cistron : radiusmiquel_van_smoorenburg_cistron : radiusmiquel_van_smoorenburg_cistron : radiusmiquel_van_smoorenburg_cistron : radiusopenradius : openradiusopenradius : openradiusopenradius : openradiusopenradius : openradiusopenradius : openradiusradiusclient : radiusclientxtradius : xtradiusxtradius : xtradiusyard_radius : yard_radiusyard_radius : yard_radiusyard_radius : yard_radiusyard_radius : yard_radiusyard_radius : yard_radiusyard_radius : yard_radiusyard_radius_project : yard_radius

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2001-1377 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com