This update for freeradius fixes the following issues:
Security issues fixed: - CVE-2017-10988: Decode 'signed' attributes correctly. (bnc#1049086) - CVE-2017-10987: Check for option overflowing the packet. (bnc#1049086) - CVE-2017-10985: Fix infinite loop and memory exhaustion with 'concat' attributes. (bnc#1049086) - CVE-2017-10984: Fix write overflow in data2vpwimax(). (bnc#1049086) - CVE-2017-10983: Fix read overflow when decoding option 63. (bnc#1049086) - CVE-2017-10978: Fix read / write overflow in makesecret(). (bnc#1049086)
{
"binaries": [
{
"freeradius-server-libs": "3.0.3-17.9.1",
"freeradius-server-krb5": "3.0.3-17.9.1",
"freeradius-server-sqlite": "3.0.3-17.9.1",
"freeradius-server": "3.0.3-17.9.1",
"freeradius-server-doc": "3.0.3-17.9.1",
"freeradius-server-mysql": "3.0.3-17.9.1",
"freeradius-server-ldap": "3.0.3-17.9.1",
"freeradius-server-python": "3.0.3-17.9.1",
"freeradius-server-utils": "3.0.3-17.9.1",
"freeradius-server-perl": "3.0.3-17.9.1",
"freeradius-server-postgresql": "3.0.3-17.9.1"
}
]
}{
"binaries": [
{
"freeradius-server-libs": "3.0.3-17.9.1",
"freeradius-server-krb5": "3.0.3-17.9.1",
"freeradius-server-sqlite": "3.0.3-17.9.1",
"freeradius-server": "3.0.3-17.9.1",
"freeradius-server-doc": "3.0.3-17.9.1",
"freeradius-server-mysql": "3.0.3-17.9.1",
"freeradius-server-ldap": "3.0.3-17.9.1",
"freeradius-server-python": "3.0.3-17.9.1",
"freeradius-server-utils": "3.0.3-17.9.1",
"freeradius-server-perl": "3.0.3-17.9.1",
"freeradius-server-postgresql": "3.0.3-17.9.1"
}
]
}{
"binaries": [
{
"freeradius-server-libs": "3.0.3-17.9.1",
"freeradius-server-krb5": "3.0.3-17.9.1",
"freeradius-server-sqlite": "3.0.3-17.9.1",
"freeradius-server": "3.0.3-17.9.1",
"freeradius-server-doc": "3.0.3-17.9.1",
"freeradius-server-mysql": "3.0.3-17.9.1",
"freeradius-server-ldap": "3.0.3-17.9.1",
"freeradius-server-python": "3.0.3-17.9.1",
"freeradius-server-utils": "3.0.3-17.9.1",
"freeradius-server-perl": "3.0.3-17.9.1",
"freeradius-server-postgresql": "3.0.3-17.9.1"
}
]
}