Buffer overflow in the radius_get_vendor_attr function in the Radius extension before 1.2.7 for PHP allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large Vendor Specific Attributes (VSA) length value.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2013-07-31T10:00:00Z

Updated: 2024-09-16T20:59:13.208Z

Reserved: 2013-02-19T00:00:00Z

Link: CVE-2013-2220

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2013-07-31T13:20:27.423

Modified: 2024-11-21T01:51:16.403

Link: CVE-2013-2220

cve-icon Redhat

No data.