RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, Access-Reject, or Access-Challenge) to any other response using a chosen-prefix collision attack against MD5 Response Authenticator signature.
CVSS Details
- CVSS 3.1 Base Score: 9
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade freeradius-krb5Upgrade krb5-server-ldapUpgrade freeradius-mysqlUpgrade freeradiusUpgrade freeradius-perlUpgrade libkadm5Upgrade freeradius-postgresqlUpgrade krb5-libsUpgrade krb5-workstationUpgrade freeradius-ldapUpgrade krb5-develUpgrade freeradius-docUpgrade krb5-pkinitUpgrade freeradius-develUpgrade freeradius-unixODBCUpgrade krb5-serverUpgrade freeradius-sqliteUpgrade python3-freeradiusUpgrade freeradius-utilsUpgrade freeradius-rest | Aug 8, 2024 | Jul 9, 2024 |
| Alpine Linux | — | Upgrade freeradius | Aug 8, 2025 | Jul 9, 2024 |
| Amazon Linux Ami 2 | — | Upgrade freeradius-develUpgrade freeradius-ldapUpgrade freeradius-sqliteUpgrade freeradius-krb5Upgrade freeradius-debuginfoUpgrade freeradius-unixODBCUpgrade freeradius-mysqlUpgrade freeradius-pythonUpgrade freeradiusUpgrade freeradius-utilsUpgrade freeradius-postgresqlUpgrade freeradius-perlUpgrade freeradius-doc | Aug 14, 2024 | Jul 9, 2024 |
| Arista Eos | — | Use RADIUS over TLS (RadSec) if available, or alternative authentication methods. | Sep 4, 2024 | Jul 9, 2024 |
| Aruba Aos 10 | — | This vulnerability is fixed in the following HPE Aruba Networking products' software releases
- - AirWave Management Platform
- 8.3.0.3 and above
- - ClearPass Policy Manager
- 6.12.2 and above
- 6.11.9 and above
- In addition, the following steps need to be taken to enable
the RADIUS Message-Authenticator on ClearPass Navigate to
Administration > Server Manager > Server Configuration screen,
select each server individually to enable Message-Authenticator
support.
On the server screen, navigate to "Service Parameters" tab,
select the 'Radius server' service.
Under the Security header, modify the parameters
Require Message-Authenticator from NAD = yes
Require Message-Authenticator from Proxy Server = yes
Save the changes. This will then restart the service with the
requirement that the Message-Authenticator be transmitted, or the
request will not be processed.
- - Switches running AOS-CX
- 10.14.1010 and above
- 10.13.1040 and above
- 10.10.1140 and above
- - WLAN Gateways and SD-WAN Gateways running AOS-10
- AOS-10.6.0.3 and above
- AOS-10.4.1.4 and above
- - Mobility Controllers running AOS-8
- AOS-8.12.0.2 and above
- AOS-8.10.0.14 and above
- - Aruba Fabric Composer
- 7.1.1 and above
- - EdgeConnect SD-WAN Orchestrator
- Use the following link to find instructions for addressing CVE-2024-3596:
https://www.arubanetworks.com/techdocs/sdwan-PDFs/docs/advisories/or
ch_resolution_to_cve-2024-3596_latest.pdf
- - HPE Networking Instant On
- Switch series 1930 and 1960 firmware version 3.1.0 for local mode
- Upgrade Access Points firmware to version 3.1.0 and use option
"Require RADIUS Message-Authenticator" if using an external guest
portal.
Software updates for this vulnerability fix in the other affected products are forthcoming. This advisory will be updated as details on the respective product's software versions with this vulnerability fix become available.
For more information about HPE Aruba Networking products End of Support policy visit:
https://networkingsupport.hpe.com/end-of-life | Jan 14, 2025 | Jul 12, 2024 |
| Aruba Aos 8 | — | This vulnerability is fixed in the following HPE Aruba Networking products' software releases
- - AirWave Management Platform
- 8.3.0.3 and above
- - ClearPass Policy Manager
- 6.12.2 and above
- 6.11.9 and above
- In addition, the following steps need to be taken to enable
the RADIUS Message-Authenticator on ClearPass Navigate to
Administration > Server Manager > Server Configuration screen,
select each server individually to enable Message-Authenticator
support.
On the server screen, navigate to "Service Parameters" tab,
select the 'Radius server' service.
Under the Security header, modify the parameters
Require Message-Authenticator from NAD = yes
Require Message-Authenticator from Proxy Server = yes
Save the changes. This will then restart the service with the
requirement that the Message-Authenticator be transmitted, or the
request will not be processed.
- - Switches running AOS-CX
- 10.14.1010 and above
- 10.13.1040 and above
- 10.10.1140 and above
- - WLAN Gateways and SD-WAN Gateways running AOS-10
- AOS-10.6.0.3 and above
- AOS-10.4.1.4 and above
- - Mobility Controllers running AOS-8
- AOS-8.12.0.2 and above
- AOS-8.10.0.14 and above
- - Aruba Fabric Composer
- 7.1.1 and above
- - EdgeConnect SD-WAN Orchestrator
- Use the following link to find instructions for addressing CVE-2024-3596:
https://www.arubanetworks.com/techdocs/sdwan-PDFs/docs/advisories/or
ch_resolution_to_cve-2024-3596_latest.pdf
- - HPE Networking Instant On
- Switch series 1930 and 1960 firmware version 3.1.0 for local mode
- Upgrade Access Points firmware to version 3.1.0 and use option
"Require RADIUS Message-Authenticator" if using an external guest
portal.
Software updates for this vulnerability fix in the other affected products are forthcoming. This advisory will be updated as details on the respective product's software versions with this vulnerability fix become available.
For more information about HPE Aruba Networking products End of Support policy visit:
https://networkingsupport.hpe.com/end-of-life | Jan 14, 2025 | Jul 12, 2024 |
| Aruba Aos Cx | — | This vulnerability is fixed in the following HPE Aruba Networking products' software releases
- - AirWave Management Platform
- 8.3.0.3 and above
- - ClearPass Policy Manager
- 6.12.2 and above
- 6.11.9 and above
- In addition, the following steps need to be taken to enable
the RADIUS Message-Authenticator on ClearPass Navigate to
Administration > Server Manager > Server Configuration screen,
select each server individually to enable Message-Authenticator
support.
On the server screen, navigate to "Service Parameters" tab,
select the 'Radius server' service.
Under the Security header, modify the parameters
Require Message-Authenticator from NAD = yes
Require Message-Authenticator from Proxy Server = yes
Save the changes. This will then restart the service with the
requirement that the Message-Authenticator be transmitted, or the
request will not be processed.
- - Switches running AOS-CX
- 10.14.1010 and above
- 10.13.1040 and above
- 10.10.1140 and above
- - WLAN Gateways and SD-WAN Gateways running AOS-10
- AOS-10.6.0.3 and above
- AOS-10.4.1.4 and above
- - Mobility Controllers running AOS-8
- AOS-8.12.0.2 and above
- AOS-8.10.0.14 and above
- - Aruba Fabric Composer
- 7.1.1 and above
- - EdgeConnect SD-WAN Orchestrator
- Use the following link to find instructions for addressing CVE-2024-3596:
https://www.arubanetworks.com/techdocs/sdwan-PDFs/docs/advisories/or
ch_resolution_to_cve-2024-3596_latest.pdf
- - HPE Networking Instant On
- Switch series 1930 and 1960 firmware version 3.1.0 for local mode
- Upgrade Access Points firmware to version 3.1.0 and use option
"Require RADIUS Message-Authenticator" if using an external guest
portal.
Software updates for this vulnerability fix in the other affected products are forthcoming. This advisory will be updated as details on the respective product's software versions with this vulnerability fix become available.
For more information about HPE Aruba Networking products End of Support policy visit:
https://networkingsupport.hpe.com/end-of-life | Feb 5, 2025 | Jul 12, 2024 |
| Aruba Ecos | — | This vulnerability is fixed in the following HPE Aruba Networking products' software releases
- - AirWave Management Platform
- 8.3.0.3 and above
- - ClearPass Policy Manager
- 6.12.2 and above
- 6.11.9 and above
- In addition, the following steps need to be taken to enable
the RADIUS Message-Authenticator on ClearPass Navigate to
Administration > Server Manager > Server Configuration screen,
select each server individually to enable Message-Authenticator
support.
On the server screen, navigate to "Service Parameters" tab,
select the 'Radius server' service.
Under the Security header, modify the parameters
Require Message-Authenticator from NAD = yes
Require Message-Authenticator from Proxy Server = yes
Save the changes. This will then restart the service with the
requirement that the Message-Authenticator be transmitted, or the
request will not be processed.
- - Switches running AOS-CX
- 10.14.1010 and above
- 10.13.1040 and above
- 10.10.1140 and above
- - WLAN Gateways and SD-WAN Gateways running AOS-10
- AOS-10.6.0.3 and above
- AOS-10.4.1.4 and above
- - Mobility Controllers running AOS-8
- AOS-8.12.0.2 and above
- AOS-8.10.0.14 and above
- - Aruba Fabric Composer
- 7.1.1 and above
- - EdgeConnect SD-WAN Orchestrator
- Use the following link to find instructions for addressing CVE-2024-3596:
https://www.arubanetworks.com/techdocs/sdwan-PDFs/docs/advisories/or
ch_resolution_to_cve-2024-3596_latest.pdf
- - HPE Networking Instant On
- Switch series 1930 and 1960 firmware version 3.1.0 for local mode
- Upgrade Access Points firmware to version 3.1.0 and use option
"Require RADIUS Message-Authenticator" if using an external guest
portal.
Software updates for this vulnerability fix in the other affected products are forthcoming. This advisory will be updated as details on the respective product's software versions with this vulnerability fix become available.
For more information about HPE Aruba Networking products End of Support policy visit:
https://networkingsupport.hpe.com/end-of-life | Sep 25, 2025 | Jul 12, 2024 |
| Cisco Asa | — | Upgrade to the latest version of Cisco ASA to resolve this vulnerability. | Jan 19, 2026 | Jul 10, 2024 |
| Debian | — | No solution existsUpgrade freeradius | May 15, 2025 | Jul 9, 2024 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | Sep 9, 2024 |
| Fortinet Fortianalyzer | — | Upgrade FortiAnalyzer to 7.6.2Upgrade FortiAnalyzer to 7.2.10Upgrade FortiAnalyzer to 7.4.6Upgrade to the latest version of FortiAnalyzer | May 26, 2026 | Aug 13, 2024 |
| Fortinet Fortiauthenticator | — | Upgrade FortiAuthenticator to 6.6.3Upgrade FortiAuthenticator to 6.5.6Upgrade FortiAuthenticator to 6.4.10 | Aug 5, 2026 | Aug 13, 2024 |
| Fortinet Fortimanager | — | Upgrade FortiManager to 7.2.10Upgrade FortiManager to 7.4.6Upgrade to the latest version of FortiManagerUpgrade FortiManager to 7.6.2 | May 25, 2026 | Aug 13, 2024 |
| Fortinet Fortiweb | — | Upgrade FortiWeb to 7.6.1Upgrade to the latest version of FortiWebUpgrade FortiWeb to 7.4.5 | Jun 30, 2026 | Aug 13, 2024 |
| Fortios | — | Upgrade to the latest version of FortiOSUpgrade FortiOS to 7.4.6Upgrade FortiOS to 7.2.11Upgrade FortiOS to 7.6.1 | Mar 12, 2025 | Aug 13, 2024 |
| Msft | — | 2024-07 Cumulative Update for Microsoft Windows Server 2019, version 1809 (KB5040430)2024-07 Cumulative Update for Microsoft Windows 11, version 23H2 (KB5040442)2024-07 Cumulative Update for Microsoft Windows Server 2012 (KB5040485)2024-07 Cumulative Update for Microsoft Windows 10, version 1507 (KB5040448)2024-07 Cumulative Update for Microsoft Windows Server 2022, version 23H2 (KB5040438)2024-07 Cumulative Update for Microsoft Windows 10, version 22H2 (KB5040427)2024-07 Cumulative Update for Microsoft Windows 11, version 21H2 (KB5040431)2024-07 Security Only Quality Update for Windows Server 2008 R2 for x64-based Systems (KB5040498)2024-07 Cumulative Update for Microsoft Windows Server 2022, version 22H2 (KB5040437)2024-07 Cumulative Update for Microsoft Windows 10, version 21H2 (KB5040427)2024-07 Security Only Quality Update for Windows Server 2008 for x86-based Systems (KB5040490)2024-07 Cumulative Update for Microsoft Windows 11, version 22H2 (KB5040442)2024-07 Cumulative Update for Microsoft Windows 10, version 1809 (KB5040430)2024-07 Cumulative Update for Microsoft Windows 10, version 1607 (KB5040434)2024-07 Cumulative Update for Microsoft Windows Server 2022, version 21H2 (KB5040437)2024-07 Cumulative Update for Microsoft Windows Server 2012 R2 (KB5040456)2024-07 Security Only Quality Update for Windows Server 2008 for x64-based Systems (KB5040490)2024-07 Cumulative Update for Microsoft Windows Server 2016, version 1607 (KB5040434) | Jul 9, 2024 | Jul 9, 2024 |
| Nutanix Ahv | — | Upgrade Nutanix AHV to the latest version | Jun 5, 2026 | Apr 3, 2025 |
| Oracle_linux | — | Upgrade freeradius-docUpgrade freeradiusUpgrade freeradius-krb5Upgrade freeradius-mysqlUpgrade krb5-libsUpgrade freeradius-restUpgrade freeradius-sqliteUpgrade krb5-develUpgrade freeradius-utilsUpgrade libkadm5Upgrade krb5-server-ldapUpgrade freeradius-perlUpgrade krb5-serverUpgrade freeradius-postgresqlUpgrade freeradius-unixODBCUpgrade krb5-workstationUpgrade krb5-pkinitUpgrade freeradius-pythonUpgrade freeradius-develUpgrade python3-freeradiusUpgrade freeradius-ldap | Aug 16, 2024 | Jul 9, 2024 |
| Palo Alto Networks Pan Os | — | Upgrade Palo Alto Networks PAN-OS to the latest version | Jan 7, 2025 | Jul 10, 2024 |
| Panos | — | — | Jul 11, 2024 | Jul 9, 2024 |
| Redhat_linux | — | Upgrade freeradius-ldapUpgrade freeradius-perl-debuginfoUpgrade krb5-libs-debuginfoUpgrade freeradius-sqliteUpgrade krb5-debugsourceUpgrade krb5-serverUpgrade krb5-workstationUpgrade krb5-libsUpgrade krb5-server-ldapUpgrade freeradius-mysqlUpgrade freeradius-develUpgrade freeradius-postgresqlUpgrade libkadm5Upgrade krb5-server-debuginfoUpgrade freeradius-pythonUpgrade freeradius-krb5-debuginfoUpgrade freeradius-utilsUpgrade freeradius-postgresql-debuginfoUpgrade freeradius-rest-debuginfoUpgrade libkadm5-debuginfoUpgrade freeradius-debuginfoUpgrade krb5-workstation-debuginfoNo solution existsUpgrade freeradius-mysql-debuginfoUpgrade freeradius-docUpgrade freeradius-debugsourceUpgrade freeradius-unixODBC-debuginfoUpgrade krb5-debuginfoUpgrade freeradius-sqlite-debuginfoUpgrade freeradiusUpgrade freeradius-unixODBCUpgrade freeradius-krb5Upgrade freeradius-ldap-debuginfoUpgrade freeradius-restUpgrade python3-freeradius-debuginfoUpgrade freeradius-perlUpgrade krb5-develUpgrade krb5-pkinitUpgrade krb5-server-ldap-debuginfoUpgrade krb5-pkinit-debuginfoUpgrade freeradius-utils-debuginfoUpgrade krb5-devel-debuginfoUpgrade python3-freeradius | Jul 25, 2024 | Jul 9, 2024 |
| Rocky_linux | — | Upgrade freeradius-sqlite-debuginfoUpgrade krb5-debugsourceUpgrade libkadm5-debuginfoUpgrade python3-freeradius-debuginfoUpgrade freeradius-rest-debuginfoUpgrade freeradius-postgresqlUpgrade freeradius-krb5Upgrade krb5-devel-debuginfoUpgrade krb5-workstationUpgrade freeradius-debugsourceUpgrade freeradius-krb5-debuginfoUpgrade freeradius-mysql-debuginfoUpgrade krb5-server-ldapUpgrade freeradiusUpgrade python3-freeradiusUpgrade krb5-pkinit-debuginfoUpgrade freeradius-docUpgrade krb5-server-ldap-debuginfoUpgrade freeradius-mysqlUpgrade freeradius-perlUpgrade krb5-debuginfoUpgrade krb5-libs-debuginfoUpgrade krb5-server-debuginfoUpgrade freeradius-unixODBCUpgrade krb5-pkinitUpgrade freeradius-unixODBC-debuginfoUpgrade freeradius-restUpgrade freeradius-perl-debuginfoUpgrade freeradius-utilsUpgrade krb5-workstation-debuginfoUpgrade freeradius-postgresql-debuginfoUpgrade freeradius-ldapUpgrade freeradius-utils-debuginfoUpgrade krb5-serverUpgrade freeradius-sqliteUpgrade libkadm5Upgrade freeradius-develUpgrade krb5-develUpgrade freeradius-ldap-debuginfoUpgrade freeradius-debuginfoUpgrade krb5-libs | Aug 1, 2024 | Jul 9, 2024 |
| Suse | — | Upgrade freeradius-server-python3Upgrade freeradius-server-sqliteUpgrade freeradius-serverUpgrade freeradius-server-develUpgrade freeradius-server-libsUpgrade freeradius-server-postgresqlUpgrade freeradius-server-utilsUpgrade freeradius-server-docUpgrade freeradius-server-krb5Upgrade freeradius-server-pythonUpgrade freeradius-server-ldapUpgrade freeradius-server-ldap-schemasUpgrade freeradius-server-perlUpgrade freeradius-server-mysql | Jul 10, 2024 | Jul 9, 2024 |
| Ubuntu | — | Upgrade libkrad0Upgrade freeradiusUpgrade libkrad0 (Ubuntu Pro)Upgrade libk5crypto3 (Ubuntu Pro)Upgrade libk5crypto3 | Oct 4, 2024 | Jul 9, 2024 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jul 2, 2025 | Jul 9, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub