Back to search
CVE-2005-3409
Published: Nov 2, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote attackers to cause a denial of service (segmentation fault) by forcing the accept function call to return an error status, which leads to a null dereference in an exception handler.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
17447
third-party-advisory
x_refsource_SECUNIA
17480
third-party-advisory
x_refsource_SECUNIA
http://openvpn.net/changelog.html
x_refsource_CONFIRM
SUSE-SR:2005:025
vendor-advisory
x_refsource_SUSE
GLSA-200511-07
vendor-advisory
x_refsource_GENTOO
15270
vdb-entry
x_refsource_BID
OpenPKG-SA-2005.023
vendor-advisory
x_refsource_OPENPKG
17452
third-party-advisory
x_refsource_SECUNIA
20416
vdb-entry
x_refsource_OSVDB
DSA-885
vendor-advisory
x_refsource_DEBIAN
17376
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now