Skip to content

v2.5.11

Choose a tag to compare

@flichtenheld flichtenheld released this 18 Jul 14:59
· 1809 commits to master since this release

Security fixes

  • CVE-2024-5594: control channel: refuse control channel messages with
    nonprintable characters in them. Security scope: a malicious openvpn
    peer can send garbage to openvpn log, or cause high CPU load.
    (Reynir Björnsson)

    (Backport of the security fix in 2.6.11 and the fix for the bugfix
    in 2.6.12)

Full Changelog: v2.5.10...v2.5.11