OpenVPN before 2.0.1, when running in "dev tap" Ethernet...
Low severity
Unreviewed
Published
May 1, 2022
to the GitHub Advisory Database
•
Updated Jan 30, 2023
Description
Published by the National Vulnerability Database
Aug 24, 2005
Published to the GitHub Advisory Database
May 1, 2022
Last updated
Jan 30, 2023
OpenVPN before 2.0.1, when running in "dev tap" Ethernet bridging mode, allows remote authenticated clients to cause a denial of service (memory exhaustion) via a flood of packets with a large number of spoofed MAC addresses.
References