VYPR
Unrated severityNVD Advisory· Published Jan 20, 2025· Updated Jan 21, 2025

CVE-2024-13454

CVE-2024-13454

Description

Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the private CA key when created using OpenSSL 3

Affected products

2
  • Easy-RSA/Easy-RSAllm-create
    Range: >=3.0.5, <=3.1.7
  • OpenVPN/Easy-RSAv5
    Range: 3.0.5

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.