CVE-2011-4966
published 2013-03-12CVE-2011-4966: modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in…
PriorityP336medium6CVSS 2.0
AVNACMAuSCPIPAP
EPSS
1.38%
69.1th percentile
modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in /etc/shadow, which allows remote authenticated users to authenticate using an expired password.
Affected
54 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | freeradius | < freeradius 2.1.12+dfsg-1.2 (bookworm) | freeradius 2.1.12+dfsg-1.2 (bookworm) |
| freeradius | freeradius | <= 2.2.0 | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
| freeradius | freeradius | — | — |
CVSS provenance
nvdv2.06.0MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:P
osv6.0MEDIUM
vendor_debian6.0LOW
vendor_redhat6.0MEDIUM
vendor_ubuntu6.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3gjj-f2w8-w88q: modules/rlm_unix/rlm_unix
ghsa_unreviewed·2022-05-17
CVE-2011-4966 [MEDIUM] GHSA-3gjj-f2w8-w88q: modules/rlm_unix/rlm_unix
modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in /etc/shadow, which allows remote authenticated users to authenticate using an expired password.
OSV
CVE-2011-4966: modules/rlm_unix/rlm_unix
osv·2013-03-12·CVSS 6.0
CVE-2011-4966 [MEDIUM] CVE-2011-4966: modules/rlm_unix/rlm_unix
modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in /etc/shadow, which allows remote authenticated users to authenticate using an expired password.
Ubuntu
FreeRADIUS vulnerabilities
vendor_ubuntu·2014-02-26·CVSS 6.0
CVE-2011-4966 [MEDIUM] FreeRADIUS vulnerabilities
Title: FreeRADIUS vulnerabilities
Summary: Several security issues were fixed in FreeRADIUS.
It was discovered that FreeRADIUS incorrectly handled unix authentication.
A remote user could successfully authenticate with an expired password.
(CVE-2011-4966)
Pierre Carrier discovered that FreeRADIUS incorrectly handled rlm_pap
hash processing. An authenticated user could use this issue to cause
FreeRADIUS to crash, resulting in a denial of service, or possibly execute
arbitrary code. The default compiler options for affected releases should
reduce the vulnerability to a denial of service. (CVE-2014-2015)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
freeradius: does not respect expired passwords when using the unix module
vendor_redhat·2011-11-14·CVSS 6.0
CVE-2011-4966 [MEDIUM] freeradius: does not respect expired passwords when using the unix module
freeradius: does not respect expired passwords when using the unix module
modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in /etc/shadow, which allows remote authenticated users to authenticate using an expired password.
Package: freeradius (Red Hat Enterprise Linux 5) - Will not fix
Debian
CVE-2011-4966: freeradius - modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enable...
vendor_debian·2011·CVSS 6.0
CVE-2011-4966 [MEDIUM] CVE-2011-4966: freeradius - modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enable...
modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in /etc/shadow, which allows remote authenticated users to authenticate using an expired password.
Scope: local
bookworm: resolved (fixed in 2.1.12+dfsg-1.2)
bullseye: resolved (fixed in 2.1.12+dfsg-1.2)
forky: resolved (fixed in 2.1.12+dfsg-1.2)
sid: resolved (fixed in 2.1.12+dfsg-1.2)
trixie: resolved (fixed in 2.1.12+dfsg-1.2)
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-updates/2013-01/msg00029.htmlhttp://lists.opensuse.org/opensuse-updates/2013-01/msg00079.htmlhttp://rhn.redhat.com/errata/RHBA-2012-0881.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0134.htmlhttps://github.com/alandekok/freeradius-server/commit/1b1ec5ce75e224bd1755650c18ccdaa6dc53e605http://lists.opensuse.org/opensuse-updates/2013-01/msg00029.htmlhttp://lists.opensuse.org/opensuse-updates/2013-01/msg00079.htmlhttp://rhn.redhat.com/errata/RHBA-2012-0881.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0134.htmlhttps://github.com/alandekok/freeradius-server/commit/1b1ec5ce75e224bd1755650c18ccdaa6dc53e605
2013-03-12
Published