PT-2025-3699 · Undefined · Undefined

Published

2025-01-10

·

Updated

2025-01-10

·

CVE-2024-844

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
🔗 DarkWebInformer.com - Cyber Threat Intelligence 📌 CVE ID: GHSA-qcg2-98h8-485j 🔗 Aliases: CVE-2024-8474 🔹 Details: OpenVPN Connect before version 3.5.0 can contain the configuration profile's clear-text private key which is logged in the application log, which an unauthorized actor can use to decrypt the VPN traffic 🗓️ Modified: 2025-01-06T15:31:00Z 🗓️ Published: 2025-01-06T15:31:00Z 🏷️ CWE IDs: CWE-212 🔗 References:
  1. https://nvd.nist.gov/vuln/detail/CVE-2024-844
  2. https://openvpn.net/connect-docs/android-release-notes.html

Related Identifiers

CVE-2024-844

Affected Products

Undefined