Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-13122

Опубликовано: 06 июл. 2026
Источник: debian
EPSS Низкий

Описание

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openvpnfixed2.7.5-1package

Примечания

  • Fixed by: https://github.com/OpenVPN/openvpn/commit/010b6c833b7fdbe889c0c7f8fc33f588a658b81f (v2.7.5)

EPSS

Процентиль: 22%
0.00294
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

CVSS3: 5.3
redhat
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

CVSS3: 5.3
nvd
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

CVSS3: 5.3
github
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

EPSS

Процентиль: 22%
0.00294
Низкий