Freeradius
Vendor:
First CVE: Mar 4, 2002 · Active for 24 years
47
Total CVEs
More Total CVEs than 98% of tracked products
2.6
Avg CVEs / Year
Higher CVE frequency than 78% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Freeradius over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 4, 2002
24 years ago
Most Recent CVE
Jul 9, 2024
749 days ago
CVE Severity & Scoring
Freeradius47 CVEs
38%
49%
13%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (2.1%)
Network22 (46.8%)
Unknown23 (48.9%)
Physical0 (0.0%)
Adjacent Network1 (2.1%)
Attack Complexity
Low19 (40.4%)
High5 (10.6%)
Unknown23 (48.9%)
User Interaction
None24 (51.1%)
Unknown23 (48.9%)
Required0 (0.0%)
Privileges Required
Low2 (4.3%)
High0 (0.0%)
None22 (46.8%)
Unknown23 (48.9%)
Top CVEs
Signals from CVEs in this product scope (47 CVEs).
47 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-3596CRITICAL RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, Access-Reject, or Access-Challenge) to any ot | Jul 9, 2024 | 9.0 | 38 | NO | NO |
CVE-2019-11234CRITICAL FreeRADIUS before 3.0.19 does not prevent use of reflection for authentication spoofing, aka a "Dragonblood" issue, a similar issue to CVE-2019-9497. | Apr 22, 2019 | 9.8 | 35 | NO | NO |
CVE-2017-10979CRITICAL An FR-GV-202 issue in FreeRADIUS 2.x before 2.2.10 allows "Write overflow in rad_coalesce()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly | Jul 17, 2017 | 9.8 | 33 | NO | NO |
CVE-2017-10984CRITICAL An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly | Jul 17, 2017 | 9.8 | 32 | NO | NO |
CVE-2017-9148CRITICAL The TLS session cache in FreeRADIUS 2.1.1 through 2.1.7, 3.0.x before 3.0.14, 3.1.x before 2017-02-04, and 4.0.x before 2017-02-04 fails to reliably prevent resumption of an unauth | May 29, 2017 | 9.8 | 32 | NO | NO |
CVE-2014-2015HIGH Stack-based buffer overflow in the normify function in the rlm_pap module (modules/rlm_pap/rlm_pap.c) in FreeRADIUS 2.x, possibly 2.2.3 and earlier, and 3.x, possibly 3.0.1 and ear | Nov 2, 2014 | 7.5 | 32 | NO | NO |
CVE-2009-3111MEDIUM The rad_decode function in FreeRADIUS before 1.1.8 allows remote attackers to cause a denial of service (radiusd crash) via zero-length Tunnel-Password attributes, as demonstrated | Sep 9, 2009 | 5.0 | 32 | NO | YES |
CVE-2019-11235CRITICAL FreeRADIUS before 3.0.19 mishandles the "each participant verifies that the received scalar is within a range, and that the received group element is a valid point on the curve bei | Apr 22, 2019 | 9.8 | 31 | NO | NO |
CVE-2017-10986HIGH An FR-GV-303 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Infinite read in dhcp_attr2vp()" and a denial of service. | Jul 17, 2017 | 7.5 | 26 | NO | NO |
CVE-2015-8763HIGH The EAP-PWD module in FreeRADIUS 3.0 through 3.0.8 allows remote attackers to have unspecified impact via a crafted (1) commit or (2) confirm message, which triggers an out-of-boun | Mar 27, 2017 | 8.1 | 26 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (47 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
4.3% of CVEs· 85th percentile
Social Chatter
Signals from CVEs in this product scope (47 CVEs).
Media Mentions
Signals from CVEs in this product scope (47 CVEs).
Top CNAs Publishing CVEs For Freeradius
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.0.0 | 1 | 9.8 | 3.9% | 0 | 0 |
| 3.1.3 | 1 | 9.8 | 3.9% | 0 | 0 |
| 3.1.2 | 1 | 9.8 | 3.9% | 0 | 0 |
| 3.1.1 | 1 | 9.8 | 3.9% | 0 | 0 |
| 3.1.0 | 1 | 9.8 | 3.9% | 0 | 0 |
| 3.0.9 | 6 | 8.3 | 3.7% | 0 | 0 |
| 3.0.8 | 10 | 7.9 | 2.8% | 0 | 0 |
| 3.0.7 | 10 | 7.9 | 2.8% | 0 | 0 |
| 3.0.6 | 10 | 7.9 | 2.8% | 0 | 0 |
| 3.0.5 | 10 | 7.9 | 2.8% | 0 | 0 |
| 3.0.4 | 10 | 7.9 | 2.8% | 0 | 0 |
| 3.0.3 | 10 | 7.9 | 2.8% | 0 | 0 |
| 3.0.2 | 10 | 7.9 | 2.8% | 0 | 0 |
| 3.0.14 | 5 | 8.0 | 3.6% | 0 | 0 |
| 3.0.13 | 5 | 8.0 | 3.6% | 0 | 0 |
| 3.0.12 | 5 | 8.0 | 3.6% | 0 | 0 |
| 3.0.11 | 5 | 8.0 | 3.6% | 0 | 0 |
| 3.0.10 | 5 | 8.0 | 3.6% | 0 | 0 |
| 3.0.1 | 11 | 7.9 | 2.9% | 0 | 0 |
| 3.0.0 | 11 | 7.9 | 2.9% | 0 | 0 |