Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2016.0010
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2016-0010)
Summary:The remote host is missing an update for the 'openvpn' package(s) announced via the MGASA-2016-0010 advisory.
Description:Summary:
The remote host is missing an update for the 'openvpn' package(s) announced via the MGASA-2016-0010 advisory.

Vulnerability Insight:
OpenVPN versions before 2.3.9 contain an out of bounds read error in
resolve_remote() in the file socket.c. With both IPv4 and IPv6
connections, OpenVPN will read a struct sockaddr_in6, but in the IPv4 case
the data structure is smaller than in the IPv6 case.

The openvpn package has been updated to version 2.3.9, fixing this issue
and several other bugs. See the upstream Changelog for details.

Affected Software/OS:
'openvpn' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.