Vulnerabilities (CVE)

Filtered by vendor Infradead Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-16239 2 Fedoraproject, Infradead 2 Fedora, Openconnect 2020-10-07 7.5 HIGH 9.8 CRITICAL
process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encoding with crafted chunk sizes.
CVE-2020-12823 1 Infradead 1 Openconnect 2020-07-21 7.5 HIGH 9.8 CRITICAL
OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c.
CVE-2013-7098 1 Infradead 1 Openconnect 2020-02-20 7.5 HIGH 9.8 CRITICAL
OpenConnect VPN client with GnuTLS before 5.02 contains a heap overflow if MTU is increased on reconnection.