Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-51611 | Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the private CA key when created using OpenSSL 3 |
| Link | Providers |
|---|---|
| https://community.openvpn.net/openvpn/wiki/CVE-2024-13454 |
|
Fri, 22 Aug 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openvpn
Openvpn easy-rsa |
|
| CPEs | cpe:2.3:a:openvpn:easy-rsa:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openvpn
Openvpn easy-rsa |
Tue, 21 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 21 Jan 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 20 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the private CA key when created using OpenSSL 3 | |
| Weaknesses | CWE-326 | |
| References |
|
Status: PUBLISHED
Assigner: OpenVPN
Published:
Updated: 2025-01-21T20:01:41.880Z
Reserved: 2025-01-16T14:47:51.335Z
Link: CVE-2024-13454
Updated: 2025-01-21T20:01:36.798Z
Status : Analyzed
Published: 2025-01-20T21:15:21.453
Modified: 2025-08-22T21:37:36.100
Link: CVE-2024-13454
No data.
OpenCVE Enrichment
No data.
EUVD