QID 198713

Date Published: 2022-03-28

QID 198713: Ubuntu Security Notification for Open Virtual Private Network (OpenVPN) Vulnerability (USN-5347-1)

Openvpn incorrectly handled certain configurationswith multiple authentication plugins.

A remote attacker could possibly usethis issue to bypass authentication using incomplete credentials.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5347-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198713

    Software Advisories
    Advisory ID Software Component Link
    USN-5347-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5347-1