Логотип exploitDog
product: "openvpn"
Консоль
Логотип exploitDog

exploitDog

product: "openvpn"

Количество 191

Количество 191

nvd логотип

CVE-2017-7521

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double-free issue in extract_x509_extension().

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2017-7521

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ...

CVSS3: 5.9
EPSS: Низкий
ubuntu логотип

CVE-2017-7520

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.4
EPSS: Низкий
redhat логотип

CVE-2017-7520

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-7520

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2017-7520

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ...

CVSS3: 7.4
EPSS: Низкий
ubuntu логотип

CVE-2017-7508

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2017-7508

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-7508

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-7508

больше 8 лет назад

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2017-7479

больше 8 лет назад

OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reachable assertion when packet-ID counter rolls over resulting into Denial of Service of server by authenticated attacker.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2017-7479

больше 8 лет назад

OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reachable assertion when packet-ID counter rolls over resulting into Denial of Service of server by authenticated attacker.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2017-7479

больше 8 лет назад

OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reac ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2017-7478

больше 8 лет назад

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet. Note that this issue is fixed in 2.3.15 and 2.4.2.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-7478

больше 8 лет назад

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet. Note that this issue is fixed in 2.3.15 and 2.4.2.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-7478

больше 8 лет назад

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Deni ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2017-12166

около 8 лет назад

OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to a buffer overflow vulnerability when key-method 1 is used, possibly resulting in code execution.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2017-12166

около 8 лет назад

OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to a buffer overflow vulnerability when key-method 1 is used, possibly resulting in code execution.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2017-12166

около 8 лет назад

OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to ...

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2016-6329

почти 9 лет назад

OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTP-over-OpenVPN session using Blowfish in CBC mode, aka a "Sweet32" attack.

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-7521

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double-free issue in extract_x509_extension().

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-7521

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ...

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2017-7520

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.4
1%
Низкий
больше 8 лет назад
redhat логотип
CVE-2017-7520

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-7520

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

CVSS3: 7.4
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-7520

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to deni ...

CVSS3: 7.4
1%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2017-7508

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
redhat логотип
CVE-2017-7508

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-7508

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-7508

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remo ...

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2017-7479

OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reachable assertion when packet-ID counter rolls over resulting into Denial of Service of server by authenticated attacker.

CVSS3: 6.5
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-7479

OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reachable assertion when packet-ID counter rolls over resulting into Denial of Service of server by authenticated attacker.

CVSS3: 6.5
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-7479

OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reac ...

CVSS3: 6.5
1%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2017-7478

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet. Note that this issue is fixed in 2.3.15 and 2.4.2.

CVSS3: 7.5
7%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-7478

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet. Note that this issue is fixed in 2.3.15 and 2.4.2.

CVSS3: 7.5
7%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-7478

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Deni ...

CVSS3: 7.5
7%
Низкий
больше 8 лет назад
ubuntu логотип
CVE-2017-12166

OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to a buffer overflow vulnerability when key-method 1 is used, possibly resulting in code execution.

CVSS3: 9.8
1%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-12166

OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to a buffer overflow vulnerability when key-method 1 is used, possibly resulting in code execution.

CVSS3: 9.8
1%
Низкий
около 8 лет назад
debian логотип
CVE-2017-12166

OpenVPN versions before 2.3.3 and 2.4.x before 2.4.4 are vulnerable to ...

CVSS3: 9.8
1%
Низкий
около 8 лет назад
ubuntu логотип
CVE-2016-6329

OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTP-over-OpenVPN session using Blowfish in CBC mode, aka a "Sweet32" attack.

CVSS3: 5.9
5%
Низкий
почти 9 лет назад

Уязвимостей на страницу