CVE-2013-2220

Radius Extension for PHP < 1.2.7 - Buffer Overflow via Large VSA Length Value

Title source: llm
STIX 2.1

Description

Buffer overflow in the radius_get_vendor_attr function in the Radius extension before 1.2.7 for PHP allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large Vendor Specific Attributes (VSA) length value.

References (4)

Core 4
Core References
Issue Tracking x_refsource_confirm
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=714362
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2013/dsa-2726
Various Sources x_refsource_confirm
http://pecl.php.net/package/radius/1.2.7

Scores

EPSS 0.0368
EPSS Percentile 88.3%

Details

CWE
CWE-119
Status published
Products (7)
radius_extension_project/radius 1.1
radius_extension_project/radius 1.2.1
radius_extension_project/radius 1.2.2
radius_extension_project/radius 1.2.3
radius_extension_project/radius 1.2.4
radius_extension_project/radius 1.2.5
radius_extension_project/radius < 1.2.6
Published Jul 31, 2013
Tracked Since Feb 18, 2026