Описание
A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows remote attackers to potentially cause a server crash or leak heap memory via a use-after-free triggered during TLS session promotion.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.7.3-1ubuntu2 |
| esm-infra-legacy/trusty | needs-triage | |
| esm-infra-legacy/xenial | needs-triage | |
| esm-infra/bionic | needs-triage | |
| esm-infra/focal | needs-triage | |
| esm-infra/xenial | ignored | end of ESM support, was needs-triage |
| jammy | released | 2.5.11-0ubuntu0.22.04.3 |
| noble | released | 2.6.19-0ubuntu0.24.04.2 |
| questing | released | 2.6.19-0ubuntu0.25.10.2 |
| resolute | released | 2.7.0-1ubuntu1.1 |
Показывать по
EPSS
Связанные уязвимости
A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows remote attackers to potentially cause a server crash or leak heap memory via a use-after-free triggered during TLS session promotion.
A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows remote attackers to potentially cause a server crash or leak heap memory via a use-after-free triggered during TLS session promotion.
A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 throug ...
A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows remote attackers to potentially cause a server crash or leak heap memory via a use-after-free triggered during TLS session promotion.
EPSS