CVE-2024-5594 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

OpenVPN before 2.6.11 does not santize PUSH_REPLY messages properly which an attacker controlling the server can use to inject unexpected arbitrary data ending…
Critical CVSS: 9.1

CVE-2024-5594

OpenVPN before 2.6.11 does not santize PUSH_REPLY messages properly which an attacker controlling the server can use to inject unexpected arbitrary data ending up in client logs.
Vendor
Openvpn
Product
Openvpn
CWE
CWE-1287
Yayın Tarihi
2025-01-06 14:15:08
Güncelleme
2025-11-03 21:18:47
Source Identifier
security@openvpn.net
KEV Date Added
-

Kategoriler

Referanslar