RULE(RULE ID:805233)

Rule General Information
Release Date: 2015-09-16
Rule Name: PROTOCOL-RADIUS Freeradius RADIUS Server Rad_decode Remote Denial of Service Vulnerability -1 (CVE-2009-3111)
Severity:
CVE ID:
Rule Protection Details
Description: The rad_decode function in FreeRADIUS before 1.1.8 allows remote attackers to cause a denial of service (radiusd crash) via zero-length Tunnel-Password attributes.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Other Unix, Linux
Reference: SecurityFocusBID:36263
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://freeradius.org/download.html