Description: | FreeRADIUS is a high-performance and highly configurable free Remote Authentication Dial In User Service (RADIUS) server, designed to allow centralized authentication and authorization for a network.
Security Fix(es):
freeradius: eap-pwd: authentication bypass via an invalid curve attack (CVE-2019-11235)
freeradius: eap-pwd: fake authentication using reflection (CVE-2019-11234)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
|