RADIUS: Inconsistent Length

This protocol anomaly detects a RADIUS packet with a length that does not equal the sum of its attribute lengths plus 20. According to the RADIUS RFC, the length of a RADIUS packet should be the sum of all its attribute lengths plus 20, which is the sum of the lengths of other fields including code, identifier, length, and authenticator.

Extended Description

A RADIUS packet with an inconsistency between lengths of Attributes fields and the Length field is a protocol anomaly.

Short Name
RADIUS:INCONSISTANT_LENGTH
Severity
Major
Recommended
False
Recommended Action
None
Category
RADIUS
Keywords
CVE-2012-3816
Release Date
01/30/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown
CVSS Score

7.8

Found a potential security threat?