vulnerability

Alma Linux: CVE-2022-41859: Moderate: freeradius:3.0 security update (Multiple Advisories)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:C/I:N/A:N)
Published
Jan 17, 2023
Added
May 15, 2023
Modified
Jan 28, 2025

Description

In freeradius, the EAP-PWD function compute_password_element() leaks information about the password which allows an attacker to substantially reduce the size of an offline dictionary attack.

Solution(s)

alma-upgrade-freeradiusalma-upgrade-freeradius-develalma-upgrade-freeradius-docalma-upgrade-freeradius-krb5alma-upgrade-freeradius-ldapalma-upgrade-freeradius-mysqlalma-upgrade-freeradius-perlalma-upgrade-freeradius-postgresqlalma-upgrade-freeradius-restalma-upgrade-freeradius-sqlitealma-upgrade-freeradius-unixodbcalma-upgrade-freeradius-utilsalma-upgrade-python3-freeradius
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.