High severity7.5NVD Advisory· Published Jul 6, 2022· Updated Jun 17, 2026
CVE-2021-4234
CVE-2021-4234
Description
OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the client which the client again does not respond to, resulting in a limited amplification attack.
Affected products
3cpe:2.3:a:openvpn:openvpn_access_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:openvpn:openvpn_access_server:*:*:*:*:*:*:*:*range: <2.11.0
- (no CPE)
- (no CPE)range: <=2.10
Patches
Vulnerability mechanics
References
1- openvpn.net/vpn-server-resources/release-notes/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.