Fedora freeradius CVE-2019-13456 Information Disclosure Vulnerability

description-logoDescription

An information leak was discovered in the implementation of EAP-pwd in freeradius. An attacker could initiate several EAP-pwd handshakes to leak information, which can then be used to recover the user's WiFi password by performing dictionary and brute-force attacks.

affected-products-logoAffected Applications

freeradius

CVE References

CVE-2019-13456