Описание
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | code not compiled |
| esm-infra-legacy/trusty | not-affected | 2.3.2-7ubuntu3.1 |
| esm-infra/xenial | not-affected | 2.3.10-1ubuntu2 |
| precise/esm | not-affected | |
| trusty | not-affected | 2.3.2-7ubuntu3.1 |
| trusty/esm | not-affected | 2.3.2-7ubuntu3.1 |
| upstream | released | 2.4.3, 2.3.17 |
| vivid/ubuntu-core | DNE | |
| xenial | not-affected | 2.3.10-1ubuntu2 |
| yakkety | not-affected | 2.3.11-1ubuntu2 |
Показывать по
EPSS
4 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character.
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character.
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ...
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character.
EPSS
4 Medium
CVSS2
6.5 Medium
CVSS3