Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-7520

Опубликовано: 27 июн. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4
CVSS3: 7.4

Описание

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

РелизСтатусПримечание
devel

released

2.4.0-5ubuntu2
esm-infra-legacy/trusty

not-affected

2.3.2-7ubuntu3.2
esm-infra/xenial

not-affected

2.3.10-1ubuntu2.1
precise/esm

not-affected

2.2.1-8ubuntu1.5
trusty

released

2.3.2-7ubuntu3.2
trusty/esm

not-affected

2.3.2-7ubuntu3.2
upstream

released

2.4.3, 2.3.17
vivid/ubuntu-core

DNE

xenial

released

2.3.10-1ubuntu2.1
yakkety

released

2.3.11-1ubuntu2.1

Показывать по

EPSS

Процентиль: 68%
0.00571
Низкий

4 Medium

CVSS2

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.4
nvd
почти 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.4
debian
почти 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ...

CVSS3: 7.4
github
около 3 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.4
fstec
около 8 лет назад

Уязвимость пакета OpenVPN, существующая из-за неправильной обработки клиентских подключений к HTTP-прокси, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 68%
0.00571
Низкий

4 Medium

CVSS2

7.4 High

CVSS3