CVE-2016-6329
OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday
OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTP-over-OpenVPN session using Blowfish in CBC mode, aka a "Sweet32" attack.
MEDIUM · CVSS 5.9
EPSS 0.05509
Monitor
- EPSS percentile: top 10% of all CVEs by exploitation likelihood
Sigma rules0
YARA rules0