Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-28882
HistoryJun 25, 2024 - 12:00 a.m.

CVE-2024-28882

2024-06-2500:00:00
ubuntu.com
ubuntu.com
9
cve-2024-28882
unix
security vulnerability

6.5 Medium

AI Score

Confidence

Low

0 Low

EPSS

Percentile

0.0%

only call schedule_exit() once (on a given peer). Security scope: an
authenticated client can make the server “keep the session” even when the
server has been told to disconnect this client

Notes

Author Note
mdeslaur likely introduced in: https://github.com/OpenVPN/openvpn/commit/d468dff7bdfd79059818c190ddf41b125bb658de
OSVersionArchitecturePackageVersionFilename
ubuntu23.10noarchopenvpn< 2.6.5-0ubuntu1.2UNKNOWN
ubuntu24.04noarchopenvpn< 2.6.9-1ubuntu4.1UNKNOWN

6.5 Medium

AI Score

Confidence

Low

0 Low

EPSS

Percentile

0.0%