- Description
- The configuration initialization tool in OpenVPN 3 Linux v20 through v24 on Linux allows a local attacker to use symlinks pointing at an arbitrary directory which will change the ownership and permissions of that destination directory.
- Source
- security@openvpn.net
- NVD status
- Analyzed
CVSS 3.1
- Type
- Secondary
- Base score
- 6.2
- Impact score
- 3.6
- Exploitability score
- 2.5
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity
- MEDIUM
- security@openvpn.net
- CWE-59
- Hype score
- Not currently trending
🔴 OpenVPN 3 #Linux, Symlink Privilege Escalation, #CVE-2025-3908 (Critical) https://t.co/O8ClCrJEZj
@dailycve
12 Jun 2025
3 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-3908: OpenVPN 3 Linux v24.1 released https://t.co/KRx0ZkPSuk OpenVPN 3 Linux v20+ openvpn3-admin init-config, which must be run as root, follows symlinks when changing ownership and permissions. Fixed in v24.1.
@oss_security
20 May 2025
243 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-3908 The configuration initialization tool in OpenVPN 3 Linux v20 through v24 on Linux allows a local attacker to use symlinks pointing at an arbitrary directory which will … https://t.co/OxmhHBKsLn
@CVEnew
19 May 2025
298 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:openvpn:openvpn3linux:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7B6D2400-4613-4FB9-A717-CC15688D3094",
"versionEndIncluding": "24",
"versionStartIncluding": "20"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "703AF700-7A70-47E2-BC3A-7FD03B3CA9C1"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
]