Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m5x7-29rp-3xmr

Опубликовано: 06 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.9
CVSS3: 5.3

Описание

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

EPSS

Процентиль: 22%
0.00294
Низкий

5.9 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-617

Связанные уязвимости

CVSS3: 5.3
ubuntu
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

CVSS3: 5.3
redhat
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

CVSS3: 5.3
nvd
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

CVSS3: 5.3
debian
24 дня назад

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allo ...

EPSS

Процентиль: 22%
0.00294
Низкий

5.9 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-617