CVE-2025-15497

Insufficient epoch key slot processing in OpenVPN 2.7_alpha1 through 2.7_rc5 allows remote authenticated users to trigger an assert resulting in a denial of service
CVSS

No CVSS.

Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Procesamiento insuficiente de ranuras de clave de época (epoch key slot) en OpenVPN 2.7_alpha1 hasta 2.7_rc5 permite a usuarios autenticados en remoto activar un assert resultando en una denegación de servicio.

30 Jan 2026, 19:16

Type Values Removed Values Added
References
  • () https://www.mail-archive.com/openvpn-announce@lists.sourceforge.net/msg00156.html -

30 Jan 2026, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-30 18:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-15497

Mitre link : CVE-2025-15497

CVE.ORG link : CVE-2025-15497


JSON object : View

Products Affected

No product.

CWE
CWE-617

Reachable Assertion