CVE-2008-3459

Publication date 4 August 2008

Last updated 24 July 2024


Ubuntu priority

Unspecified vulnerability in OpenVPN 2.1-beta14 through 2.1-rc8, when running on non-Windows systems, allows remote servers to execute arbitrary commands via crafted (1) lladdr and (2) iproute configuration directives, probably related to shell metacharacters.

Status

Package Ubuntu Release Status
openvpn 11.04 natty
Not affected
10.10 maverick
Not affected
10.04 LTS lucid
Not affected
9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid
Not affected
8.04 LTS hardy Ignored end of life
7.10 gutsy
Not affected
7.04 feisty
Not affected
6.06 LTS dapper
Not affected