Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-12996

Опубликовано: 30 июл. 2026
Источник: redhat
CVSS3: 5.9

Описание

A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potentially cause a denial of service or leak memory via crafted packets during TLS session promotion or expiry

A flaw was found in OpenVPN. This use-after-free vulnerability allows remote authenticated peers to send specially crafted packets during TLS (Transport Layer Security) session promotion or expiry. Successful exploitation of this flaw could lead to a denial of service, making the service unavailable, or result in a memory leak, potentially exposing sensitive information.

Отчет

Moderate impact. This use-after-free flaw in OpenVPN requires a remote authenticated peer to send specially crafted packets during TLS session handling. While it can lead to a denial of service or memory leak, the need for prior authentication limits the attack vector, making it less severe than unauthenticated vulnerabilities.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-825
https://bugzilla.redhat.com/show_bug.cgi?id=2509536OpenVPN: OpenVPN: Denial of Service or memory leak via crafted packets

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 8.1
ubuntu
19 дней назад

A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potentially cause a denial of service or leak memory via crafted packets during TLS session promotion or expiry

CVSS3: 8.1
nvd
19 дней назад

A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potentially cause a denial of service or leak memory via crafted packets during TLS session promotion or expiry

CVSS3: 8.1
debian
19 дней назад

A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 throug ...

CVSS3: 8.1
github
19 дней назад

A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potentially cause a denial of service or leak memory via crafted packets during TLS session promotion or expiry

suse-cvrf
7 дней назад

Security update for openvpn

5.9 Medium

CVSS3