Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

OpenVPN Client 'lladdr' and 'iproute' Configuration Directive Remote Code Execution Vulnerability

In certain circumstances, the OpenVPN client is prone to a remote code-execution vulnerability when handling specially crafted configuration directives.

Attackers can leverage this issue to execute arbitrary code in the context of the application. Failed attacks will likely result in denial-of-service conditions.

NOTE: Only non-Windows clients are affected.

This issue affects OpenVPN clients 2.1-beta14 through 2.1-rc8.







 

Privacy Statement
Copyright 2008, SecurityFocus