Описание
OpenVPN 2.7_alpha1 through 2.7_beta1 on POSIX based platforms allows a remote authenticated server to inject shell commands via DNS variables when --dns-updown is in use
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| esm-infra-legacy/trusty | not-affected | |
| esm-infra/bionic | not-affected | |
| esm-infra/focal | not-affected | |
| esm-infra/xenial | not-affected | |
| jammy | not-affected | |
| noble | not-affected | |
| plucky | not-affected | |
| questing | not-affected | |
| upstream | not-affected | debian: Vulnerable code not present, only affected 2.7_alpha1 through 2.7_beta1 |
Показывать по
8.8 High
CVSS3
Связанные уязвимости
OpenVPN 2.7_alpha1 through 2.7_beta1 on POSIX based platforms allows a remote authenticated server to inject shell commands via DNS variables when --dns-updown is in use
OpenVPN 2.7_alpha1 through 2.7_beta1 on POSIX based platforms allows a ...
OpenVPN 2.7_alpha1 through 2.7_beta1 on POSIX based platforms allows a remote authenticated server to inject shell commands via DNS variables when --dns-updown is in use
Уязвимость компонента --dns-updown программного обеспечения OpenVPN, позволяющая нарушителю выполнить произвольный код
8.8 High
CVSS3