CVE

Id
4181  
CVE No.
CVE-2001-1377  
Status
Candidate  
Description
Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2.  
Phase
Proposed (20020611)  
Votes
ACCEPT(5) Alderson, Cole, Cox, Frech, Green | NOOP(2) Foat, Wall  
Comments