<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 16:18:25 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-02221</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-02221</link>
      <description>bdu:2021-02221</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-02221</guid>
    </item>
    <item>
      <title>cnvd-2021-31747</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-31747</link>
      <description>cnvd-2021-31747</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-31747</guid>
    </item>
    <item>
      <title>EUVD-2026-42619</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-42619</link>
      <description>EUVD-2026-42619</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-42619</guid>
    </item>
    <item>
      <title>fkie_cve-2020-15078</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-15078</link>
      <description>&lt;p&gt;OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-15078</guid>
    </item>
    <item>
      <title>GHSA-r2jp-995w-h282</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r2jp-995w-h282</link>
      <description>&lt;p&gt;OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r2jp-995w-h282</guid>
    </item>
    <item>
      <title>gsd-2020-15078</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-15078</link>
      <description>gsd-2020-15078</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-15078</guid>
    </item>
    <item>
      <title>OESA-2021-1197 — openvpn security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1197</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: openvpn&lt;/p&gt;
&lt;p&gt;OpenVPN is a full-featured open source SSL VPN solution that accommodates a wide range of configurations,  including remote access, site-to-site VPNs, Wi-Fi security, and enterprise-scale remote access solutions with load balancing,  failover, and fine-grained access-controls. Starting with the fundamental premise that complexity is the enemy of security,  OpenVPN offers a cost-effective, lightweight alternative to other VPN technologies that is well-adapted for the SME and enterprise markets.&#13;
&#13;
Security Fix(es):&#13;
&#13;
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.(CVE-2020-15078)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: openvpn&lt;/p&gt;
&lt;p&gt;OpenVPN is a full-featured open source SSL VPN solution that accommodates a wide range of configurations,  including remote access, site-to-site VPNs, Wi-Fi security, and enterprise-scale remote access solutions with load balancing,  failover, and fine-grained access-controls. Starting with the fundamental premise that complexity is the enemy of security,  OpenVPN offers a cost-effective, lightweight alternative to other VPN technologies that is well-adapted for the SME and enterprise markets.&#13;
&#13;
Security Fix(es):&#13;
&#13;
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.(CVE-2020-15078)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1197</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:0734-1 — Security update for openvpn</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0734-1</link>
      <description>&lt;p&gt;Security update for openvpn&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for openvpn&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:0734-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:14723-1 — Security update for openvpn-openssl1</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:14723-1</link>
      <description>&lt;p&gt;Security update for openvpn-openssl1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for openvpn-openssl1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:14723-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-15078</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15078</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: openvpn, Ubuntu:20.04:LTS: openvpn&lt;/p&gt;
&lt;p&gt;OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: openvpn, Ubuntu:20.04:LTS: openvpn&lt;/p&gt;
&lt;p&gt;OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15078</guid>
    </item>
    <item>
      <title>VDE-2022-010 — PHOENIX CONTACT: Multiple Linux component vulnerabilities fixed in latest AXC F x152 LTS release</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-010</link>
      <description>&lt;p&gt;PLCnext Control AXC F x152 is certified according to IEC 62443-4-1 and IEC 62443-4-2.
This certification requires that all third-party components used in the firmware are regularly checked for known vulnerabilities.&lt;/p&gt;
&lt;p&gt;Firmware components in version 2021.06 had already been updated. For the 2022.0 LTS version more firmware components have been updated implicitly fixing the vulnerabilities listed. The vulnerabilities listed above have not been individually verified in terms of actual impact and/or limitations in combination with the affected products listed. The current LTS release 2022.0 LTS contains updates of integrated third-party libraries, SDKs and other third-party software to address these issues nevertheless.&lt;/p&gt;
&lt;p&gt;UPDATE A (April 4th, 2022): Added RFC 4072 (Art. No. 1051328) and fixed affected version of AXC F 3152&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PLCnext Control AXC F x152 is certified according to IEC 62443-4-1 and IEC 62443-4-2.
This certification requires that all third-party components used in the firmware are regularly checked for known vulnerabilities.&lt;/p&gt;
&lt;p&gt;Firmware components in version 2021.06 had already been updated. For the 2022.0 LTS version more firmware components have been updated implicitly fixing the vulnerabilities listed. The vulnerabilities listed above have not been individually verified in terms of actual impact and/or limitations in combination with the affected products listed. The current LTS release 2022.0 LTS contains updates of integrated third-party libraries, SDKs and other third-party software to address these issues nevertheless.&lt;/p&gt;
&lt;p&gt;UPDATE A (April 4th, 2022): Added RFC 4072 (Art. No. 1051328) and fixed affected version of AXC F 3152&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-010</guid>
    </item>
  </channel>
</rss>
