Back
CVE-2005-3393
Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option.
Published: Nov 1, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (4)
| Vendor | Product | Version |
|---|---|---|
| openvpn | openvpn | 2.0 |
| openvpn | openvpn | 2.0_beta11 |
| openvpn | openvpn_access_server | 2.0.1 |
| openvpn | openvpn_access_server | 2.0.2 |
GitHub Security Advisory GHSA-26pq-368c-c8f2
Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows...
References (24)
- http://marc.info/?l=bugtraq&m=113081023121059&w=2
- http://openvpn.net/changelog.html
- http://secunia.com/advisories/17376 Patch, Vendor Advisory
- http://secunia.com/advisories/17447
- http://secunia.com/advisories/17452
- http://secunia.com/advisories/17480
- http://www.debian.org/security/2005/dsa-885
- http://www.gentoo.org/security/en/glsa/glsa-200511-07.xml
- http://www.novell.com/linux/security/advisories/2005_25_sr.html
- http://www.securityfocus.com/archive/1/415487
- http://www.securityfocus.com/bid/15239 Patch
- http://www.vupen.com/english/advisories/2005/2255
- http://marc.info/?l=bugtraq&m=113081023121059&w=2
- http://openvpn.net/changelog.html
- http://secunia.com/advisories/17376 Patch, Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.48%
Top 12% most likely to be exploited
Threat Score
31 / 100
Data Sources
NVD
EPSS
GitHub