[Bug 164000] Re: CVE-2006-1354: EAP-MSCHAPv2 vulnerability
Launchpad has imported 3 comments from the remote bug at https://bugzilla.redhat.com/show_bug.cgi?id=186083. If you reply to an imported comment from within Launchpad, your comment will be sent to the remote bug automatically. Read more about Launchpad's inter-bugtracker facilities at https://help.launchpad.net/InterBugTracking. On 2006-03-21T15:25:58+00:00 Josh wrote: FreeRADIUS authentication bypass A bug in the EAP-MSCHAPv2 module could allow an attacker to improperly authenticate as an aribitrary user. http://www.freeradius.org/security.html This issue also affects RHEL3 Reply at: https://bugs.launchpad.net/ubuntu/+source/freeradius/+bug/164000/comments/0 On 2006-03-21T15:28:32+00:00 Josh wrote: Created attachment 126403 Patch from upstream CVS Reply at: https://bugs.launchpad.net/ubuntu/+source/freeradius/+bug/164000/comments/1 On 2006-04-04T08:45:59+00:00 Red wrote: An advisory has been issued which should help the problem described in this bug report. This report is therefore being closed with a resolution of ERRATA. For more information on the solution and/or where to find the updated files, please follow the link below. You may reopen this bug report if the solution does not work for you. http://rhn.redhat.com/errata/RHSA-2006-0271.html Reply at: https://bugs.launchpad.net/ubuntu/+source/freeradius/+bug/164000/comments/2 ** Changed in: freeradius (Fedora) Importance: Unknown => High -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/164000 Title: CVE-2006-1354: EAP-MSCHAPv2 vulnerability To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/freeradius/+bug/164000/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 164000] Re: CVE-2006-1354: EAP-MSCHAPv2 vulnerability
** Changed in: freeradius (Ubuntu Dapper) Status: In Progress = Fix Committed -- CVE-2006-1354: EAP-MSCHAPv2 vulnerability https://bugs.launchpad.net/bugs/164000 You received this bug notification because you are a member of Ubuntu Bugs, which is the bug contact for Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 164000] Re: CVE-2006-1354: EAP-MSCHAPv2 vulnerability
** Changed in: freeradius (Ubuntu Dapper) Status: Fix Committed = Fix Released -- CVE-2006-1354: EAP-MSCHAPv2 vulnerability https://bugs.launchpad.net/bugs/164000 You received this bug notification because you are a member of Ubuntu Bugs, which is the bug contact for Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 164000] Re: CVE-2006-1354: EAP-MSCHAPv2 vulnerability
** Changed in: freeradius (Debian) Status: Unknown = Fix Released -- CVE-2006-1354: EAP-MSCHAPv2 vulnerability https://bugs.launchpad.net/bugs/164000 You received this bug notification because you are a member of Ubuntu Bugs, which is the bug contact for Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 164000] Re: CVE-2006-1354: EAP-MSCHAPv2 vulnerability
** Changed in: freeradius (Fedora) Status: Unknown = Fix Released -- CVE-2006-1354: EAP-MSCHAPv2 vulnerability https://bugs.launchpad.net/bugs/164000 You received this bug notification because you are a member of Ubuntu Bugs, which is the bug contact for Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 164000] Re: CVE-2006-1354: EAP-MSCHAPv2 vulnerability
** Changed in: freeradius (Ubuntu Dapper) Status: Triaged = In Progress -- CVE-2006-1354: EAP-MSCHAPv2 vulnerability https://bugs.launchpad.net/bugs/164000 You received this bug notification because you are a member of Ubuntu Bugs, which is the bug contact for Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs