Описание
openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x before 2.4.6 allows a local attacker to cause a double-free of memory by sending a malformed request to the interactive service. This could cause a denial-of-service through memory corruption or possibly have unspecified other impact including privilege escalation.
Релиз | Статус | Примечание |
---|---|---|
artful | not-affected | |
bionic | not-affected | |
devel | not-affected | |
esm-infra-legacy/trusty | not-affected | |
esm-infra/bionic | not-affected | |
esm-infra/xenial | not-affected | |
precise/esm | not-affected | |
trusty | not-affected | |
trusty/esm | not-affected | |
upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
4.6 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x before 2.4.6 allows a local attacker to cause a double-free of memory by sending a malformed request to the interactive service. This could cause a denial-of-service through memory corruption or possibly have unspecified other impact including privilege escalation.
openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x ...
openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x before 2.4.6 allows a local attacker to cause a double-free of memory by sending a malformed request to the interactive service. This could cause a denial-of-service through memory corruption or possibly have unspecified other impact including privilege escalation.
EPSS
4.6 Medium
CVSS2
7.8 High
CVSS3