Security Advisory

CVE-2013-4147

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-08-09 21:00:00
Last updated 2024-08-06 16:30:49
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Multiple format string vulnerabilities in Yet Another Radius Daemon (YARD RADIUS) 1.1.2 allow context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in a request in the (1) log_msg function in log.c or (2) version or (3) build_version function in version.c.