CVE-2013-2220
Publication date 31 July 2013
Last updated 24 July 2024
Ubuntu priority
Description
Buffer overflow in the radius_get_vendor_attr function in the Radius extension before 1.2.7 for PHP allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large Vendor Specific Attributes (VSA) length value.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| php-radius | 16.04 LTS xenial |
Not affected
|
| 14.04 LTS trusty | Not in release | |