Files
meta-openembedded/meta-networking/recipes-connectivity
Yi Zhao b8d1a14f7f freeradius: upgrade 3.2.3 -> 3.2.5
ChangeLog:
https://github.com/FreeRADIUS/freeradius-server/releases/tag/release_3_2_4
https://github.com/FreeRADIUS/freeradius-server/releases/tag/release_3_2_5

Security fixes:
CVE-2024-3596:
RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a
local attacker who can modify any valid Response (Access-Accept,
Access-Reject, or Access-Challenge) to any other response using a
chosen-prefix collision attack against MD5 Response Authenticator
signature.

Reference:
https://nvd.nist.gov/vuln/detail/CVE-2024-3596
https://www.freeradius.org/security/
https://www.blastradius.fail/
https://www.inkbridgenetworks.com/web/content/2557?unique=47be02c8aed46c53b0765db185320249ad873d95

(master rev: 28d82d17c8)

Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Haixiao Yan <haixiao.yan.cn@windriver.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
2024-11-24 17:38:31 -05:00
..
2024-02-09 09:52:12 -08:00
2024-02-09 09:52:12 -08:00
2024-03-20 09:28:05 -07:00
2024-11-09 14:33:18 -05:00
2021-08-03 10:21:25 -07:00
2024-04-21 10:52:41 -07:00
2024-03-24 22:52:26 -07:00
2021-08-03 10:21:25 -07:00
2024-02-09 09:52:12 -08:00
2023-08-03 09:14:20 -07:00
2024-09-15 12:28:06 -04:00
2023-02-20 00:23:02 -08:00
2023-05-26 08:28:37 -07:00
2023-08-03 09:14:20 -07:00
2024-04-02 14:56:53 -07:00