CVE Vulnerabilities

CVE-2023-48957

Published: Aug 25, 2024 | Modified: Mar 14, 2025
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PureVPN Linux client 2.0.2-Productions fails to properly handle DNS queries, allowing them to bypass the VPN tunnel and be sent directly to the ISP or default DNS servers.

Affected Software

NameVendorStart VersionEnd Version
PurevpnPurevpn2.0.2 (including)2.0.2 (including)

References