Logo
vulnerabilityCVE-2011-4966
Name
CVE-2011-4966
Source
NVD ( link)Debian ( link)
Description
modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in /etc/shadow, which allows remote authenticated users to authenticate using an expired password.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
freeradius3
Exploitable

Vulnerability Rating#


6
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
3.2.6
Not Affected
buildroot
master
3.2.8
Not Affected
openwrt
master
3.2.8-r1
Exploitable
yocto
kirkstone
3.0.27
Not Affected
yocto
master
3.2.10
Not Affected
yocto
scarthgap
3.2.6
Not Affected