← Back to team overview

pkg-perl-maintainers team mailing list archive

[Bug 2084260] [NEW] Authen::Radius doesn't work in case of RFC3579 Message-Authenticator is received.

 

Public bug reported:

This issue became a real problem after Blast-RADIUS (CVE-2024-3596)
issue was fixed on a server side.

Upstream has filed RT#154336 issue
(https://rt.cpan.org/Public/Bug/Display.html?id=154336) related to this
problem.

In attachment patch which should help with this issue.

For verification I have used the latest FreeRADIUS docker image and
check_pwd.pl script (from sources tarball).

** Affects: libauthen-radius-perl (Ubuntu)
     Importance: Undecided
         Status: New

** Attachment added: "44950f9.patch"
   https://bugs.launchpad.net/bugs/2084260/+attachment/5827136/+files/44950f9.patch

-- 
You received this bug notification because you are a member of Debian
Perl Group, which is subscribed to libauthen-radius-perl in Ubuntu.
https://bugs.launchpad.net/bugs/2084260

Title:
  Authen::Radius doesn't work in case of RFC3579 Message-Authenticator
  is received.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libauthen-radius-perl/+bug/2084260/+subscriptions



Follow ups