HomeFreeBSD

security/openvpn: critical update to 2.6.13

Description

security/openvpn: critical update to 2.6.13

ChangeLog: https://github.com/OpenVPN/openvpn/blob/v2.6.13/Changes.rst#overview-of-changes-in-2613

Notably: Security fixes

improve server-side handling of clients sending usernames or
passwords longer than USER_PASS_LEN - this would not result in a crash,
buffer overflow or other security issues, but the server would then
misparse incoming IV_* variables and produce misleading error messages.

Security: 47bc292a-d472-11ef-aaab-7d43732cb6f5
MFH: 2025Q1

Details

Provenance
mandreeAuthored on Jan 17 2025, 1:24 AM
Parents
R11:a07b2a9949f3: security/vuxml: mention security/openvpn username/password length bugfix of v2.
Branches
Unknown
Tags
Unknown