SB2023111006 - Fedora 39 update for openvpn
Published: November 10, 2023
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 2 secuirty vulnerabilities.
1) Division by zero (CVE-ID: CVE-2023-46849)
The vulnerability allows a remote client to perform a denial of service (DoS) attack.
The vulnerability exists due to server incorrectly restores "--fragment" configuration under certain circumstances. A remote client can cause a divide by zero error and perform a denial of service (DoS) attack.
2) Use-after-free (CVE-ID: CVE-2023-46850)
The vulnerability allows a remote user to gain access to sensitive information.
The vulnerability exists due to openvpn incorrectly uses a send buffer after it has been freed. Under certain circumstances the freed memory can be sent to the client peer, resulting in information disclosure. The vulnerability affects TLS configuration.
Remediation
Install update from vendor's website.