Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-7508

Опубликовано: 27 июн. 2017
Источник: debian
EPSS Низкий

Описание

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openvpnfixed2.4.3-1package
openvpnnot-affectedwheezypackage

Примечания

  • https://www.openwall.com/lists/oss-security/2017/06/21/6

  • https://community.openvpn.net/openvpn/wiki/VulnerabilitiesFixedInOpenVPN243

  • Fixed by (master): https://github.com/OpenVPN/openvpn/commit/c3f47077a7756de5929094569421a95aa66f2022

  • Fixed by (2.4.x): https://github.com/OpenVPN/openvpn/commit/ed28cde3d8bf3f1459b2f42f0e27d64801009f92

  • Fixed by (2.3.x): https://github.com/OpenVPN/openvpn/commit/fc61d1bda112ffc669dbde961fab19f60b3c7439

EPSS

Процентиль: 76%
0.00968
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
redhat
почти 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
nvd
почти 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

suse-cvrf
почти 8 лет назад

Security update for openvpn

CVSS3: 7.5
github
около 3 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

EPSS

Процентиль: 76%
0.00968
Низкий