CVE-2025-3908
The configuration initialization tool in OpenVPN 3 Linux v20 through v24 on Linux allows a local attacker to use symlinks pointing at an arbitrary directory which will change the ownership and permissions of that destination directory.
Vendor
Product
CWE
Yayın Tarihi
2025-05-19 15:15:23
Güncelleme
2025-06-12 16:25:23
Source Identifier
security@openvpn.net
KEV Date Added
-