🛡️ UBUNTU-CVE-2024-3661
⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.

Details

Severity Unknown
CVSS Score N/A
CVSS Vector CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2024-05-06
Updated 2026-06-02
Modified 2026-05-20
Fix URL N/A

Affected Packages

Software From version Fixed in
connman
gadmin-openvpn-client
gadmin-openvpn-server
golang-github-apparentlymart-go-openvpn-mgmt
kvpnc
libreswan
mozillavpn
n2n
network-manager-fortisslvpn
network-manager-iodine
network-manager-l2tp
network-manager-openconnect
network-manager-openvpn
network-manager-pptp
network-manager-sstp
network-manager-strongswan
network-manager-vpnc
openconnect
openfortivpn
openvpn
pptp-linux
pptpd
quicktun
riseup-vpn
softether-vpn
sshuttle
tinc
vpnc
wireguard

References

Similar Threats

Exploit Protection

Help block exploit attempts

BotEraser is designed to detect and help reduce malicious bot traffic that may target known vulnerabilities on your site.

Try BotEraser Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.