[prev in list] [next in list] [prev in thread] [next in thread]
List: full-disclosure
Subject: Re: [Full-disclosure] Cisco Security Advisory: RADIUS Authentication
From: cstone <cstone () pobox ! com>
Date: 2005-06-29 16:46:14
Message-ID: 20050629164614.GB31515 () pobox ! com
[Download RAW message or body]
On Wed, Jun 29, 2005 at 05:00:00PM +0200, Cisco Systems Product Security Incident Response Team wrote:
i would like to file a bug with this advisory (infinite loop):
[...]
> 4. Is there any other method between RADIUS and none?
> No: You are vulnerable.
> Yes: Go to step 5.
>
> 5. Is the other authentication method local?
> No: You are not vulnerable.
> Yes: Go to step 4.
[...]
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic