cbcvebase.
CVE-2015-4680
published 2017-04-05

CVE-2015-4680: FreeRADIUS 2.2.x before 2.2.8 and 3.0.x before 3.0.9 does not properly check revocation of intermediate CA certificates.

high7.5CVSS 3.0
AVNACLPRNUINSUCNIHAN
FreeRADIUS 2.2.x before 2.2.8 and 3.0.x before 3.0.9 does not properly check revocation of intermediate CA certificates.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianfreeradius< freeradius 2.2.8+dfsg-0.1 (bookworm)freeradius 2.2.8+dfsg-0.1 (bookworm)
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius
freeradiusfreeradius>= 0 < 2.2.8+dfsg-0.12.2.8+dfsg-0.1
freeradiusfreeradius>= 0 < 2.2.8+dfsg-0.12.2.8+dfsg-0.1
freeradiusfreeradius>= 0 < 2.2.8+dfsg-0.12.2.8+dfsg-0.1
freeradiusfreeradius>= 0 < 2.2.8+dfsg-0.12.2.8+dfsg-0.1
suselinux_enterprise_server
suselinux_enterprise_software_development_kit

CVSS provenance

nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
osv7.5HIGH