CVE-2020-15078
published 2021-04-26CVE-2020-15078: OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred…
PriorityP353high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
5.11%
91.4th percentile
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | openvpn | < openvpn 2.5.1-2 (bookworm) | openvpn 2.5.1-2 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| openvpn | openvpn | < 2.4.11 | 2.4.11 |
| openvpn | openvpn | — | — |
| openvpn | openvpn | >= 0 < 2.5.1-2 | 2.5.1-2 |
| openvpn | openvpn | >= 0 < 2.5.1-2 | 2.5.1-2 |
| openvpn | openvpn | >= 0 < 2.5.1-2 | 2.5.1-2 |
| openvpn | openvpn | >= 0 < 2.5.1-2 | 2.5.1-2 |
| openvpn | openvpn | >= 0 < 2.4.4-2ubuntu1.5 | 2.4.4-2ubuntu1.5 |
| openvpn | openvpn | >= 0 < 2.4.7-1ubuntu2.20.04.2 | 2.4.7-1ubuntu2.20.04.2 |
| openvpn | openvpn | >= 2.5.0 < 2.5.2 | 2.5.2 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv7.5HIGH
vendor_debian7.5HIGH
vendor_ubuntu3.7LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenVPN vulnerabilities
vendor_ubuntu·2021-05-04·CVSS 3.7
CVE-2020-15078 [LOW] OpenVPN vulnerabilities
Title: OpenVPN vulnerabilities
Summary: Several security issues were fixed in OpenVPN.
It was discovered that OpenVPN incorrectly handled certain data channel v2
packets. A remote attacker could possibly use this issue to inject packets
using a victim's peer-id. This issue only affected Ubuntu 18.04 LTS and
Ubuntu 20.04 LTS. (CVE-2020-11810)
It was discovered that OpenVPN incorrectly handled deferred authentication.
When a server is configured to use deferred authentication, a remote
attacker could possibly use this issue to bypass authentication and access
control channel data. (CVE-2020-15078)
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2020-15078: openvpn - OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentic...
vendor_debian·2020·CVSS 7.5
CVE-2020-15078 [HIGH] CVE-2020-15078: openvpn - OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentic...
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.
Scope: local
bookworm: resolved (fixed in 2.5.1-2)
bullseye: resolved (fixed in 2.5.1-2)
forky: resolved (fixed in 2.5.1-2)
sid: resolved (fixed in 2.5.1-2)
trixie: resolved (fixed in 2.5.1-2)
GHSA
GHSA-r2jp-995w-h282: OpenVPN 2
ghsa_unreviewed·2022-05-24
CVE-2020-15078 [HIGH] CWE-287 GHSA-r2jp-995w-h282: OpenVPN 2
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.
OSV
openvpn vulnerabilities
osv·2021-05-04·CVSS 3.7
CVE-2020-11810 [LOW] openvpn vulnerabilities
openvpn vulnerabilities
It was discovered that OpenVPN incorrectly handled certain data channel v2
packets. A remote attacker could possibly use this issue to inject packets
using a victim's peer-id. This issue only affected Ubuntu 18.04 LTS and
Ubuntu 20.04 LTS. (CVE-2020-11810)
It was discovered that OpenVPN incorrectly handled deferred authentication.
When a server is configured to use deferred authentication, a remote
attacker could possibly use this issue to bypass authentication and access
control channel data. (CVE-2020-15078)
OSV
CVE-2020-15078: OpenVPN 2
osv·2021-04-26·CVSS 7.5
CVE-2020-15078 [HIGH] CVE-2020-15078: OpenVPN 2
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://community.openvpn.net/openvpn/wiki/CVE-2020-15078https://community.openvpn.net/openvpn/wiki/SecurityAnnouncementshttps://lists.debian.org/debian-lts-announce/2022/05/msg00002.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GJUXEYHUPREEBPX23VPEKMFXUPVO3PMU/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JGEGLC4YGBDN5CGHTNWN2GH6DJJA36T2/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PLDB3OBQ3AODYYRN7NRCABV6I4AUFAT6/https://security.gentoo.org/glsa/202105-25https://usn.ubuntu.com/usn/usn-4933-1https://community.openvpn.net/openvpn/wiki/CVE-2020-15078https://community.openvpn.net/openvpn/wiki/SecurityAnnouncementshttps://lists.debian.org/debian-lts-announce/2022/05/msg00002.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GJUXEYHUPREEBPX23VPEKMFXUPVO3PMU/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JGEGLC4YGBDN5CGHTNWN2GH6DJJA36T2/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PLDB3OBQ3AODYYRN7NRCABV6I4AUFAT6/https://security.gentoo.org/glsa/202105-25https://usn.ubuntu.com/usn/usn-4933-1
2021-04-26
Published