← Back

Yard Radius

yard_radius

Vendor: Yard Radius Project • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Yard Radius Project
1Yard Radius
Apr 29, 2026
Aug 9, 2013
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple format string vulnerabilities in Yet Another Radius Daemon (YARD RADIUS) 1.1.2 allow context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifie...Show more
Multiple format string vulnerabilities in Yet Another Radius Daemon (YARD RADIUS) 1.1.2 allow context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in a request in the (1) log_msg function in log.c or (2) version or (3) build_version function in version.c.Show less
2Yard Radius
Yard Radius Project
2Yard Radius
Yard Radius
Apr 16, 2026
Jan 10, 2005
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in the process_menu function in yardradius 1.0.20 allows remote attackers to execute arbitrary code.
11Freeradius
GnuIcradius+8 more
11Freeradius
IcradiusOpenradius+8 more
Apr 16, 2026
Mar 4, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2.
12Ascend
FreeradiusGnu+9 more
12Freeradius
IcradiusOpenradius+9 more
Apr 16, 2026
Mar 4, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.