* Steve Langasek:

> FWIW, I'm not convinced this bug warrants grave severity anyway; unless the
> crasher bug allows arbitrary code execution as well, it doesn't seem like
> this is really a big issue given that the radius clients shouldn't normally
> be under the control of an attacker?

Nowadays, RADIUS is performed across administrative boundaries. 8-/
(And in a service provider environment, attacks on availability are
often as significant as attacks on integrity or confidentiality.)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to