Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Buffer Overflow via Crafted IPv6 Addr Attribute Type Client Request in Accel-PPP v1.12
Vulnerability Description
The rad_packet_recv function in opt/src/accel-pppd/radius/packet.c suffers from a buffer overflow vulnerability, whereby user input len is copied into a fixed buffer &attr->val.integer without any bound checks. If the client connects to the server and sends a large radius packet, a buffer overflow vulnerability will be triggered.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
accel-ppp 安全漏洞
Vulnerability Description
Accel-Ppp是一个适用于 Linux 的高性能 Pptp/L2tp/Pppoe/Ipoe 服务器。 accel-ppp存在安全漏洞,该漏洞源于accel-pppd radius packet.c中的rad packet recv函数存在缓冲区溢出漏洞,如果客户端连接到服务器端并发送了较大的radius报文,则会触发缓冲区溢出漏洞。
CVSS Information
N/A
Vulnerability Type
N/A