vulnerability
SUSE: CVE-2017-7478: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:N/I:N/A:P) | May 10, 2017 | Jun 20, 2017 | Jun 20, 2021 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
May 10, 2017
Added
Jun 20, 2017
Modified
Jun 20, 2021
Description
OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet. Note that this issue is fixed in 2.3.15 and 2.4.2.
Solution(s)
suse-upgrade-openvpnsuse-upgrade-openvpn-auth-pam-pluginsuse-upgrade-openvpn-openssl1suse-upgrade-openvpn-openssl1-down-root-plugin

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.