OpenConnect contains a flaw that may allow a denial of service. The issue is triggered when handling relative HTTP redirects and an error occurs, which will result in loss of availability for the program. No further information is available.
Classification
Location:
Remote / Network Access
Attack Type:
Denial of Service
Impact:
Loss of Availability
Solution:
Upgrade
Exploit:
Exploit Unknown
Disclosure:
Vendor Verified
OSVDB:
Web Related
Solution
Upgrade to version 2.26 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.