[prev in list] [next in list] [prev in thread] [next in thread] 

List:       full-disclosure
Subject:    Re: [Full-disclosure] Cisco Security Advisory: RADIUS Authentication
From:       cstone <cstone () pobox ! com>
Date:       2005-06-29 16:46:14
Message-ID: 20050629164614.GB31515 () pobox ! com
[Download RAW message or body]

On Wed, Jun 29, 2005 at 05:00:00PM +0200, Cisco Systems Product Security Incident Response Team wrote:

i would like to file a bug with this advisory (infinite loop):

[...]

> 4. Is there any other method between RADIUS and none?
> No: You are vulnerable.
> Yes: Go to step 5.
> 
> 5. Is the other authentication method local?
> No: You are not vulnerable.
> Yes: Go to step 4.

[...]
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic