Denial of service in OpenVPN for Windows - CVE-2017-7479

 

Denial of service in OpenVPN for Windows - CVE-2017-7479

Published: May 15, 2017 / Updated: May 16, 2017


Vulnerability identifier: #VU6545
CSH Severity: Medium
CVSS v4: 7.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-7479
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote authenticated attacker to cause DoS conditions on the target system.

The weakness exists due to improper user-input validation. A remote attacker can cause the packet-IDs on the target server to be consumed, trigger the server process to hit an ASSERT() and stop running.

Successful exploitation of the vulnerability of results in denial of service.

Affected software

OpenVPN for Windows
Debian Linux
Fedora
SUSE Linux
Ubuntu
openvpn (Alpine package)
openvpn

How to mitigate CVE-2017-7479

Update to version 2.3.15, 2.4.2 or later.

openvpn (Alpine package) - update to 2.3.15-r0
openvpn - addressed in versions 2.3.16-1.fc24, 2.4.2-1.el6, 2.4.2-1.fc25, 2.4.2-1.fc26, 2.4.2-2.el7, 2.4.3-1.el6

External References

Related Security Bulletins