Fedora Account System
Red Hat Associate
Red Hat Customer
OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the client which the client again does not respond to, resulting in a limited amplification attack. https://openvpn.net/vpn-server-resources/release-notes/#openvpn-access-server-2-11-0
Created openvpn tracking bugs for this issue: Affects: epel-all [bug 2120485] Affects: fedora-all [bug 2120486]
This is about OpenVPN ACCESS SERVER. That is not a Fedora package project. Removing myself from this ticket.
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.