infradead OpenConnect 4.07

CPE Details

infradead OpenConnect 4.07
4.07
2013-02-25
18h11 +00:00
2013-03-20
11h57 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:infradead:openconnect:4.07:*:*:*:*:*:*:*

Informations

Vendor

infradead

Product

openconnect

Version

4.07

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-12105 2020-04-23 14h15 +00:00 OpenConnect through 8.08 mishandles negative return values from X509_check_ function calls, which might assist attackers in performing man-in-the-middle attacks.
5.9
Medium
CVE-2013-7098 2020-02-13 21h32 +00:00 OpenConnect VPN client with GnuTLS before 5.02 contains a heap overflow if MTU is increased on reconnection.
9.8
Critical
CVE-2019-16239 2019-09-17 09h37 +00:00 process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encoding with crafted chunk sizes.
9.8
Critical
CVE-2012-6128 2013-02-24 18h00 +00:00 Multiple stack-based buffer overflows in http.c in OpenConnect before 4.08 allow remote VPN gateways to cause a denial of service (application crash) via a long (1) hostname, (2) path, or (3) cookie list in a response.
5