Variable underflow exists in accel-ppp radius/packet.c when receiving a RADIUS vendor-specific attribute with length field is less than 2. It has an impact only when the attacker controls the RADIUS server, which can lead to arbitrary code execution.
{
"unresolved_ranges": [
{
"cpe": "cpe:2.3:a:accel-ppp:accel-ppp:*:*:*:*:*:*:*:*",
"source": "CPE_FIELD",
"extracted_events": [
{
"fixed": "1.12.0-e9d369a"
}
]
}
]
}