[Git][security-tracker-team/security-tracker][master] Update status for CVE-2023-6247/openvpn3-client

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Mar 21 16:01:17 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bab65d1b by Salvatore Bonaccorso at 2025-03-21T16:57:20+01:00
Update status for CVE-2023-6247/openvpn3-client

The fix was in the fork in version 23+dfsg, as per
https://salsa.debian.org/erpel/openvpn3-client/-/commit/de8216c826f74cdfa52bed610bac9a925ec9a9b8

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -116780,7 +116780,7 @@ CVE-2023-6806 (The Starbox plugin for WordPress is vulnerable to Stored Cross-Si
 CVE-2023-6565 (The InfiniteWP Client plugin for WordPress is vulnerable to Sensitive  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-6247 (The PKCS#7 parser in OpenVPN 3 Core Library versions through 3.8.3 did ...)
-	- openvpn3-client <unfixed>
+	- openvpn3-client <not-affected> (Fixed before initial upload to the archive)
 	NOTE: https://community.openvpn.net/openvpn/wiki/CVE-2023-6247
 	NOTE: https://github.com/OpenVPN/openvpn3/commit/afdfe1bb3f4c54e879429950b95e5c0e29b1a77d (release/3.8.4)
 CVE-2023-52439 (In the Linux kernel, the following vulnerability has been resolved:  u ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bab65d1b90594cf46610577dde9a6f5f163b61e4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bab65d1b90594cf46610577dde9a6f5f163b61e4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250321/d7c0c216/attachment.htm>


More information about the debian-security-tracker-commits mailing list