CVE-2008-5284
The web server in IEA Software RadiusNT and RadiusX 5.1.38 and other versions before 5.1.44, Emerald 5.0.49 and other versions before 5.0.52, Air Marshal 2.0.4 and other versions before 2.0.8, and Radius test client (aka Radlogin) 4.0.20 and earlier,…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (4.44%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The web server in IEA Software RadiusNT and RadiusX 5.1.38 and other versions before 5.1.44, Emerald 5.0.49 and other versions before 5.0.52, Air Marshal 2.0.4 and other versions before 2.0.8, and Radius test client (aka Radlogin) 4.0.20 and earlier, allows remote attackers to cause a denial of service (crash) via an HTTP Content-Length header with a negative value, which triggers a single byte overwrite of memory using a NULL terminator. NOTE: some of these details are obtained from third party information.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 4.44% probability · 91th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-189
- Affected
- iea software/air marshal · iea software/emerald · iea software/radius test client · iea software/radiusnt · iea software/radiusx · iea software/radlogin
- Source
- cve@mitre.org
References
- http://aluigi.altervista.org/adv/emerdal-adv.txtExploit
- http://secunia.com/advisories/28846Vendor Advisory
- http://www.iea-software.com/docs/Emerald5/changes.txt
- http://www.iea-software.com/docs/Radius40/changes.txt
- http://www.iea-software.com/docs/airmarshal1/changes.txt
- http://www.securityfocus.com/archive/1/487810/100/200/threaded
- http://www.securityfocus.com/bid/27701Exploit
- http://www.vupen.com/english/advisories/2008/0484
- http://aluigi.altervista.org/adv/emerdal-adv.txtExploit
- http://secunia.com/advisories/28846Vendor Advisory
- http://www.iea-software.com/docs/Emerald5/changes.txt
- http://www.iea-software.com/docs/Radius40/changes.txt
- http://www.iea-software.com/docs/airmarshal1/changes.txt
- http://www.securityfocus.com/archive/1/487810/100/200/threaded
- http://www.securityfocus.com/bid/27701Exploit
- http://www.vupen.com/english/advisories/2008/0484
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.