freeradius 2.1.12+dfsg-1.2ubuntu8.2 source package in Ubuntu

Changelog

freeradius (2.1.12+dfsg-1.2ubuntu8.2) trusty-security; urgency=medium

  * SECURITY UPDATE: read/write overflow in make_secret()
    - debian/patches/CVE-2017-10978.patch: check lengths in
      src/lib/radius.c.
    - CVE-2017-10978
  * SECURITY UPDATE: write overflow in rad_coalesce
    - debian/patches/CVE-2017-10979.patch: check for long attributes in
      src/lib/dhcp.c, src/lib/radius.c.
    - CVE-2017-10979
  * SECURITY UPDATE: memory leak in decode_tlv()
    - debian/patches/CVE-2017-10980.patch: fix memory leak in
      src/lib/dhcp.c.
    - CVE-2017-10980
  * SECURITY UPDATE: memory leak in fr_dhcp_decode()
    - debian/patches/CVE-2017-10981.patch: fix another memory leak in
      src/lib/dhcp.c.
    - CVE-2017-10981
  * SECURITY UPDATE: read overflow in fr_dhcp_decode_options()
    - debian/patches/CVE-2017-10982.patch: check for long options in
      src/lib/dhcp.c.
    - CVE-2017-10982
  * SECURITY UPDATE: read overflow when decoding option 63
    - debian/patches/CVE-2017-10983.patch: decode correct option in
      src/lib/dhcp.c.
    - CVE-2017-10983

 -- Marc Deslauriers <email address hidden>  Wed, 26 Jul 2017 10:56:56 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Trusty
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Trusty updates main net
Trusty security main net

Downloads

File Size SHA-256 Checksum
freeradius_2.1.12+dfsg.orig.tar.bz2 2.0 MiB 4e9775751794c7eeb4ef9e4b2bf3b62283cdc915cac60da7347d140a4cf9ee0e
freeradius_2.1.12+dfsg-1.2ubuntu8.2.debian.tar.gz 84.5 KiB 5be31f7f87331d19e85f63c74b03dba52fbdd40e5c69b09e7a51811be572b250
freeradius_2.1.12+dfsg-1.2ubuntu8.2.dsc 2.8 KiB bb3806f2c613e71883de4e3c60f2ba50c458d39bea9f063a44c71d895f7436b8

View changes file

Binary packages built by this source

freeradius: high-performance and highly configurable RADIUS server

 FreeRADIUS is a high-performance RADIUS server with support for:
  - many vendor-specific attributes
  - proxying and replicating requests by any criteria
  - authentication on system passwd, SQL, Kerberos, LDAP, users file, or PAM
  - multiple DEFAULT configurations
  - regexp matching in string attributes
 and lots more.

freeradius-common: FreeRADIUS common files

 This package contains common files used by several of the other packages from
 the FreeRADIUS project.

freeradius-dbg: debug symbols for the FreeRADIUS packages

 FreeRADIUS is a modular, high performance and feature-rich RADIUS server.
 This package contains the detached debugging symbols for the Debian FreeRADIUS
 packages.

freeradius-dbgsym: debug symbols for package freeradius

 FreeRADIUS is a high-performance RADIUS server with support for:
  - many vendor-specific attributes
  - proxying and replicating requests by any criteria
  - authentication on system passwd, SQL, Kerberos, LDAP, users file, or PAM
  - multiple DEFAULT configurations
  - regexp matching in string attributes
 and lots more.

freeradius-dialupadmin: set of PHP scripts for administering a FreeRADIUS server

 These scripts provide a web-based interface for administering a FreeRADIUS
 server which stores authentication information in either SQL or LDAP.

freeradius-iodbc: iODBC module for FreeRADIUS server

 The FreeRADIUS server can use iODBC to access databases to authenticate users
 and do accounting, and this module is necessary for that.

freeradius-iodbc-dbgsym: debug symbols for package freeradius-iodbc

 The FreeRADIUS server can use iODBC to access databases to authenticate users
 and do accounting, and this module is necessary for that.

freeradius-krb5: kerberos module for FreeRADIUS server

 The FreeRADIUS server can use Kerberos to authenticate users, and this module
 is necessary for that.

freeradius-krb5-dbgsym: debug symbols for package freeradius-krb5

 The FreeRADIUS server can use Kerberos to authenticate users, and this module
 is necessary for that.

freeradius-ldap: LDAP module for FreeRADIUS server

 The FreeRADIUS server can use LDAP to authenticate users, and this module
 is necessary for that.

freeradius-ldap-dbgsym: debug symbols for package freeradius-ldap

 The FreeRADIUS server can use LDAP to authenticate users, and this module
 is necessary for that.

freeradius-mysql: MySQL module for FreeRADIUS server

 The FreeRADIUS server can use MySQL to authenticate users and do accounting,
 and this module is necessary for that.

freeradius-mysql-dbgsym: debug symbols for package freeradius-mysql

 The FreeRADIUS server can use MySQL to authenticate users and do accounting,
 and this module is necessary for that.

freeradius-postgresql: PostgreSQL module for FreeRADIUS server

 The FreeRADIUS server can use PostgreSQL to authenticate users and do
 accounting, and this module is necessary for that.

freeradius-postgresql-dbgsym: debug symbols for package freeradius-postgresql

 The FreeRADIUS server can use PostgreSQL to authenticate users and do
 accounting, and this module is necessary for that.

freeradius-utils: FreeRADIUS client utilities

 This package contains various client programs and utilities from
 the FreeRADIUS Server project, including:
  - radclient
  - radeapclient
  - radlast
  - radsniff
  - radsqlrelay
  - radtest
  - radwho
  - radzap
  - rlm_dbm_cat
  - rlm_dbm_parser
  - rlm_ippool_tool
  - smbencrypt

freeradius-utils-dbgsym: debug symbols for package freeradius-utils

 This package contains various client programs and utilities from
 the FreeRADIUS Server project, including:
  - radclient
  - radeapclient
  - radlast
  - radsniff
  - radsqlrelay
  - radtest
  - radwho
  - radzap
  - rlm_dbm_cat
  - rlm_dbm_parser
  - rlm_ippool_tool
  - smbencrypt

libfreeradius-dev: FreeRADIUS shared library development files

 The FreeRADIUS projects' libfreeradius-radius and libfreeradius-eap, used by
 the FreeRADIUS server and some of the utilities.
 .
 This package contains the development headers and static library version.

libfreeradius-dev-dbgsym: debug symbols for package libfreeradius-dev

 The FreeRADIUS projects' libfreeradius-radius and libfreeradius-eap, used by
 the FreeRADIUS server and some of the utilities.
 .
 This package contains the development headers and static library version.

libfreeradius2: FreeRADIUS shared library

 The FreeRADIUS projects' libfreeradius-radius and libfreeradius-eap, used by
 the FreeRADIUS server and some of the utilities.

libfreeradius2-dbgsym: debug symbols for package libfreeradius2

 The FreeRADIUS projects' libfreeradius-radius and libfreeradius-eap, used by
 the FreeRADIUS server and some of the utilities.