CVE-2017-7521
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 3.9%
exploitation probability
3.9%top 11% of all CVEs
observed exploitation
nono source reports it
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double-free issue in extract_x509_extension().
Affected products
OpenVPN Technologies, Inc · OpenVPN