OpenVPN — свободная реализация технологии виртуальной частной сети (VPN) с открытым исходным кодом для создания зашифрованных каналoв типа точка-точка или сервер-клиенты между компьютерами.
Релизный цикл, информация об уязвимостях
График релизов
Количество 203
CVE-2017-12166
OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to ...
CVE-2017-12166
OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to a buffer overflow vulnerability when key-method 1 is used, possibly resulting in code execution.
CVE-2017-7522
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character.
CVE-2017-7522
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ...
CVE-2017-7521
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double-free issue in extract_x509_extension().
CVE-2017-7521
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ...
CVE-2017-7520
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.
CVE-2017-7520
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ...
CVE-2017-7508
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.
CVE-2017-7508
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2017-12166 OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to ... | CVSS3: 9.8 | 2% Низкий | больше 8 лет назад | |
CVE-2017-12166 OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to a buffer overflow vulnerability when key-method 1 is used, possibly resulting in code execution. | CVSS3: 9.8 | 2% Низкий | больше 8 лет назад | |
CVE-2017-7522 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character. | CVSS3: 6.5 | 0% Низкий | больше 8 лет назад | |
CVE-2017-7522 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ... | CVSS3: 6.5 | 0% Низкий | больше 8 лет назад | |
CVE-2017-7521 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double-free issue in extract_x509_extension(). | CVSS3: 5.9 | 0% Низкий | больше 8 лет назад | |
CVE-2017-7521 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ... | CVSS3: 5.9 | 0% Низкий | больше 8 лет назад | |
CVE-2017-7520 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker. | CVSS3: 7.4 | 1% Низкий | больше 8 лет назад | |
CVE-2017-7520 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ... | CVSS3: 7.4 | 1% Низкий | больше 8 лет назад | |
CVE-2017-7508 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet. | CVSS3: 7.5 | 0% Низкий | больше 8 лет назад | |
CVE-2017-7508 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ... | CVSS3: 7.5 | 0% Низкий | больше 8 лет назад |
Уязвимостей на страницу