5
CVSSv2

CVE-2005-2532

Published: 24/08/2005 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

OpenVPN prior to 2.0.1 does not properly flush the OpenSSL error queue when a packet can not be decrypted by the server, which allows remote authenticated malicious users to cause a denial of service (client disconnection) via a large number of packets that can not be decrypted.

Vulnerable Product Search on Vulmon Subscribe to Product

openvpn openvpn 2.0.1_rc1

openvpn openvpn 2.0.1_rc2

openvpn openvpn 2.0.1_rc3

openvpn openvpn 2.0.1_rc4

openvpn openvpn 2.0_beta19

openvpn openvpn 2.0_beta2

openvpn openvpn 2.0_beta20

openvpn openvpn 2.0_beta28

openvpn openvpn 2.0_rc15

openvpn openvpn 2.0_rc16

openvpn openvpn 2.0_rc17

openvpn openvpn 2.0_rc18

openvpn openvpn 2.0_test11

openvpn openvpn 2.0_test12

openvpn openvpn 2.0_test14

openvpn openvpn 2.0_test15

openvpn openvpn 2.0_test29

openvpn openvpn 2.0_test3

openvpn openvpn 2.0_test5

openvpn openvpn 2.0_test6

openvpn openvpn 2.0_test7

openvpn openvpn 2.0_beta10

openvpn openvpn 2.0_beta11

openvpn openvpn 2.0_beta12

openvpn openvpn 2.0_beta13

openvpn openvpn 2.0_beta8

openvpn openvpn 2.0_beta9

openvpn openvpn 2.0_rc1

openvpn openvpn 2.0_rc10

openvpn openvpn 2.0_rc3

openvpn openvpn 2.0_rc4

openvpn openvpn 2.0_rc5

openvpn openvpn 2.0_rc6

openvpn openvpn 2.0_test2

openvpn openvpn 2.0_test20

openvpn openvpn 2.0_test21

openvpn openvpn 2.0_test22

openvpn openvpn 2.0

openvpn openvpn 2.0.1_rc5

openvpn openvpn 2.0.1_rc7

openvpn openvpn 2.0_beta16

openvpn openvpn 2.0_beta18

openvpn openvpn 2.0_beta3

openvpn openvpn 2.0_beta5

openvpn openvpn 2.0_beta7

openvpn openvpn 2.0_rc11

openvpn openvpn 2.0_rc13

openvpn openvpn 2.0_rc2

openvpn openvpn 2.0_rc21

openvpn openvpn 2.0_rc7

openvpn openvpn 2.0_rc9

openvpn openvpn 2.0_test10

openvpn openvpn 2.0_test16

openvpn openvpn 2.0_test18

openvpn openvpn 2.0_test24

openvpn openvpn 2.0_test27

openvpn openvpn 2.0_test9

openvpn openvpn 2.0.1_rc6

openvpn openvpn 2.0_beta1

openvpn openvpn 2.0_beta15

openvpn openvpn 2.0_beta17

openvpn openvpn 2.0_beta4

openvpn openvpn 2.0_beta6

openvpn openvpn 2.0_rc12

openvpn openvpn 2.0_rc14

openvpn openvpn 2.0_rc19

openvpn openvpn 2.0_rc20

openvpn openvpn 2.0_rc8

openvpn openvpn 2.0_test1

openvpn openvpn 2.0_test17

openvpn openvpn 2.0_test19

openvpn openvpn 2.0_test23

openvpn openvpn 2.0_test26

openvpn openvpn 2.0_test8

Vendor Advisories

Several security related problems have been discovered in openvpn, a Virtual Private Network daemon The Common Vulnerabilities and Exposures project identifies the following problems: CAN-2005-2531 Wrong processing of failed certificate authentication when running with "verb 0" and without TLS authentication can lead to a denial of se ...