Database/Control plane, storage & DevOps
OpenVPN: Stack overflow in the interactive service
CVSS 7.8CVE-2024-27459Control plane, storage & DevOpscurated
Impact
Stack overflow in the interactive service -> local privilege escalation on the client host
Who can reach it
Local
What to do
Control-plane: jump-host and operator workstation update
References
Related entries
- OpenVPN: The interactive service pipe is reachable remotelyCVE-2024-24974 · OpenVPNHigh
- OpenVPN: Corrupting and replaying early-handshake packets against a tls-crypt-v2 serverCVE-2025-2704 · OpenVPNHigh
- Intel QuickAssist Technology (QAT) software and driversCVE-2024-31858 · Intel QuickAssist Technology (QAT) software and drivers - QAT software before 2.2.0, with a 2025 batch through 2.6.0High
- IBM Storage Scale GUI (local privilege escalation): A local privilege escalation in the Storage Scale GUI availableCVE-2024-31891 · IBM Storage Scale GUI (local privilege escalation)High
- Linux HID/amd_sfh - driver_data freed after HID device destruction: A use-after-free in the AMD Sensor Fusion Hub HIDCVE-2024-46746 · Linux HID/amd_sfh - driver_data freed after HID device destructionHigh
- N-able N-central: Deserialization of untrusted data allowing local code execution on the RMM serverCVE-2025-8875 · N-able N-centralHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.