nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-4234 CVE-2021-4234
HIGH
Record summary
CVE-2021-4234 has a selected CVSS score of 7.5 (high).
Description
OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the client which the client again does not respond to, resulting in a limited amplification attack.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
OpenVPN Access Server | CVE List | 2.10 and prior version | affected |
References
2openvpn.net
https://openvpn.net/vpn-server-resources/release-notes