Aller au contenu

Fiche vulnérabilité

CVE-2026-13122 : faille moyenne openvpn openvpn (CVSS 5.3)

Description

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled

En bref

Sévérité
Moyenne (CVSS 5.3)
Vecteur CVSS
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitation active
Non signalée par la CISA
Publication
6 juil. 2026
Dernière mise à jour
9 juil. 2026

Produits concernés

  • openvpn openvpn

Références

Rechercher une autre vulnérabilité dans la base CVE