Vulnerabilities > Openvpn > Openvpn > 2.4.1

DATE CVE VULNERABILITY TITLE RISK
2017-06-27 CVE-2017-7520 Out-of-bounds Read vulnerability in Openvpn
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.
network
high complexity
openvpn CWE-125
4.0
2017-06-27 CVE-2017-7508 Reachable Assertion vulnerability in Openvpn
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.
network
low complexity
openvpn CWE-617
5.0
2017-05-15 CVE-2017-7479 Reachable Assertion vulnerability in Openvpn
OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reachable assertion when packet-ID counter rolls over resulting into Denial of Service of server by authenticated attacker.
network
low complexity
openvpn CWE-617
4.0
2017-05-15 CVE-2017-7478 Improper Input Validation vulnerability in Openvpn
OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet.
network
low complexity
openvpn CWE-20
5.0