HIGH
Multiple format string vulnerabilities in Yet Another Radius Daemon (YARD RADIUS) 1.1.2 allow context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in a request in the (1) log_msg function in log.c or (2) version or (3) build_version function in version.c
Published Aug 9, 2013
7.5
HIGHCVSS 2.0
EPSS 3.66%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.