A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.
2022-02-16T19:15:08.763
2025-03-28T15:15:41.413
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 5.14 | Yes |
Operating System | linux | linux_kernel | < 5.15.15 | Yes |
Operating System | fedoraproject | fedora | 34 | Yes |
Operating System | redhat | enterprise_linux | 6.0 | Yes |
Operating System | redhat | enterprise_linux | 7.0 | Yes |
Operating System | redhat | enterprise_linux | 8.0 | Yes |
Application | oracle | communications_cloud_native_core_binding_support_function | 22.1.3 | Yes |
Application | oracle | communications_cloud_native_core_network_exposure_function | 22.1.1 | Yes |
Application | oracle | communications_cloud_native_core_policy | 22.2.0 | Yes |