{"id":"UBUNTU-CVE-2026-104201","details":"[GHSA-wj29-mxmc-q98c: Heap OOB read/write in MS-MPPE key re-encryption]","modified":"2026-10-02T22:30:19.077903341Z","published":"2026-10-02T00:00:00Z","upstream":["CVE-2026-104201"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-104201"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2026-104201"},{"type":"REPORT","url":"https://github.com/radsecproxy/radsecproxy/security/advisories/GHSA-wj29-mxmc-q98c"},{"type":"REPORT","url":"https://github.com/radsecproxy/radsecproxy/commit/9256b4a78ad6b14d97f80a0e749c66d97e46d5e1"}],"affected":[{"package":{"name":"radsecproxy","ecosystem":"Ubuntu:16.04:LTS","purl":"pkg:deb/ubuntu/radsecproxy?arch=source&distro=xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.6.5-1build1"],"ecosystem_specific":{"binaries":[{"binary_name":"radsecproxy","binary_version":"1.6.5-1build1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-104201.json"}},{"package":{"name":"radsecproxy","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/radsecproxy?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.6.9-1"],"ecosystem_specific":{"binaries":[{"binary_name":"radsecproxy","binary_version":"1.6.9-1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-104201.json"}},{"package":{"name":"radsecproxy","ecosystem":"Ubuntu:20.04:LTS","purl":"pkg:deb/ubuntu/radsecproxy?arch=source&distro=focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.7.2-1","1.8.1-1"],"ecosystem_specific":{"binaries":[{"binary_version":"1.8.1-1","binary_name":"radsecproxy"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-104201.json"}},{"package":{"name":"radsecproxy","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/radsecproxy?arch=source&distro=jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.8.2-4","1.9.1-1","1.9.1-1build1"],"ecosystem_specific":{"binaries":[{"binary_name":"radsecproxy","binary_version":"1.9.1-1build1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-104201.json"}},{"package":{"name":"radsecproxy","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/radsecproxy?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.9.2-2","1.10.0-1","1.10.0-2","1.10.0-2build1","1.10.0-2build2"],"ecosystem_specific":{"binaries":[{"binary_name":"radsecproxy","binary_version":"1.10.0-2build2"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-104201.json"}},{"package":{"name":"radsecproxy","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/radsecproxy?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.11.2-1","1.11.2-1build1"],"ecosystem_specific":{"binaries":[{"binary_name":"radsecproxy","binary_version":"1.11.2-1build1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-104201.json"}}],"schema_version":"1.9.0","severity":[{"type":"Ubuntu","score":"medium"}]}