Описание
Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflow
A flaw was found in OpenVPN. Remote unauthenticated attackers can cause a denial of service by sending specially crafted network inputs. These inputs trigger a timeout integer overflow during the retransmission of acknowledgment (ACK) packet IDs, which can make the OpenVPN service unavailable.
Отчет
This is an Important denial of service flaw in OpenVPN, enabling remote unauthenticated attackers to disrupt service availability. The vulnerability, stemming from crafted ACK packet retransmissions, can render OpenVPN instances unresponsive when exposed to untrusted networks, posing a significant risk to VPN service continuity.
Дополнительная информация
Статус:
7.5 High
CVSS3
Связанные уязвимости
Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflow
Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflow
Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 a ...
Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflow
7.5 High
CVSS3