cbcvebase.
CVE-2010-3696
published 2010-10-07

CVE-2010-3696: The fr_dhcp_decode function in lib/dhcp.c in FreeRADIUS 2.1.9, in certain non-default builds, does not properly handle the DHCP Relay Agent Information option…

PriorityP417medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
1.62%
73.4th percentile
The fr_dhcp_decode function in lib/dhcp.c in FreeRADIUS 2.1.9, in certain non-default builds, does not properly handle the DHCP Relay Agent Information option, which allows remote attackers to cause a denial of service (infinite loop and daemon outage) via a packet that has more than one sub-option. NOTE: some of these details are obtained from third party information.

Affected

6 ranges
VendorProductVersion rangeFixed in
debianfreeradius< freeradius 2.1.10+dfsg-1 (bookworm)freeradius 2.1.10+dfsg-1 (bookworm)
freeradiusfreeradius
freeradiusfreeradius>= 0 < 2.1.10+dfsg-12.1.10+dfsg-1
freeradiusfreeradius>= 0 < 2.1.10+dfsg-12.1.10+dfsg-1
freeradiusfreeradius>= 0 < 2.1.10+dfsg-12.1.10+dfsg-1
freeradiusfreeradius>= 0 < 2.1.10+dfsg-12.1.10+dfsg-1

CVSS provenance

nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.