Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the private CA key when created using OpenSSL 3
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://community.openvpn.net/openvpn/wiki/CVE-2024-13454 |
![]() ![]() |
History
Tue, 21 Jan 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 21 Jan 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Mon, 20 Jan 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the private CA key when created using OpenSSL 3 | |
Weaknesses | CWE-326 | |
References |
|

Status: PUBLISHED
Assigner: OpenVPN
Published:
Updated: 2025-01-21T20:01:41.880Z
Reserved: 2025-01-16T14:47:51.335Z
Link: CVE-2024-13454

Updated: 2025-01-21T20:01:36.798Z

Status : Received
Published: 2025-01-20T21:15:21.453
Modified: 2025-01-21T20:15:30.793
Link: CVE-2024-13454

No data.