vulnerability

SUSE: CVE-2017-7478: SUSE Linux Security Advisory

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
May 10, 2017
Added
Jun 20, 2017
Modified
Jun 20, 2021

Description

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet. Note that this issue is fixed in 2.3.15 and 2.4.2.

Solution(s)

suse-upgrade-openvpnsuse-upgrade-openvpn-auth-pam-pluginsuse-upgrade-openvpn-openssl1suse-upgrade-openvpn-openssl1-down-root-plugin
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.