CVE-2024-5198: Null Pointer Dereference
OpenVPN ovpn-dco for Windows version 1.1.1 allows an unprivileged local attacker to send I/O control messages with invalid data to the driver resulting in a NULL pointer dereference leading to a system halt.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5198?
CVE-2024-5198 is classified as a high severity vulnerability due to its potential to cause a system halt.
How do I fix CVE-2024-5198?
To fix CVE-2024-5198, upgrade to the latest version of OpenVPN ovpn-dco where the vulnerability has been patched.
Who is affected by CVE-2024-5198?
CVE-2024-5198 affects users of OpenVPN ovpn-dco for Windows version 1.1.1.
What impact does CVE-2024-5198 have on affected systems?
CVE-2024-5198 can lead to a NULL pointer dereference resulting in a system halt, disrupting normal operations.
Is exploit code available for CVE-2024-5198?
While exploit code for CVE-2024-5198 has not been publicly disclosed, its impact is significant enough to warrant immediate attention from system administrators.