Beveiligingsadvies

CVE-2019-11235

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-04-21 16:40:32
Laatst bijgewerkt 2024-08-04 22:48:08
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

FreeRADIUS before 3.0.19 mishandles the "each participant verifies that the received scalar is within a range, and that the received group element is a valid point on the curve being used" protection mechanism, aka a "Dragonblood" issue, a similar issue to CVE-2019-9498 and CVE-2019-9499.