suse · CVE-2017-10985

Quick triage

Priority: medium Published: 2021-05-30 13:58:33 UTC Updated: 2026-04-17 16:04:47 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2017-10985 severity moderate: SUSE including 164 source package names (freeradius-3.0.13-8.el7_4, freeradius-devel-3.0.13-8.el7_4, …), 230 product×package rows across 22 product lines (SUSE Liberty Linux 7, SUSE Linux Enterprise High Performance Computing 12 SP5, … (22 product lines)): Fixed 206, Known Not Affected 24.

Description:

An FR-GV-302 issue in FreeRADIUS 3.x before 3.0.15 allows "Infinite loop and memory exhaustion with 'concat' attributes" and a denial of service.

cvelogic Threat Intelligence