OpenVPN 2.4.11 released
Samuli Seppänen <[email protected]> Wed, 21 Apr 2021 13:00:23 +0300
| Newsgroups | gmane.network.openvpn.announce |
|---|---|
| Organization | OpenVPN Technologies, Inc. |
| Message-ID | <ca34aa38-a88a-13ff-a66e-c30e6e61d871__11884.5657257893$1618999368$gmane$org@openvpn.net> |
The OpenVPN community project team is proud to release OpenVPN 2.4.11. = It fixes two related security vulnerabilities (CVE-2020-15078) which = under very specific circumstances allow tricking a server using delayed = authentication (plugin or management) into returning a PUSH_REPLY before = the AUTH_FAILED message, which can possibly be used to gather = information about a VPN setup. This release also includes other bug = fixes and improvements. Updated OpenSSL and OpenVPN GUI are included in = Windows installers. Source code and Windows installers can be downloaded from our download page: <https://openvpn.net/community-downloads/> Debian and Ubuntu packages are available in the official apt repositories: <https://community.openvpn.net/openvpn/wiki/OpenvpnSoftwareRepos> -- = Samuli Sepp=E4nen Community Manager OpenVPN Technologies, Inc irc freenode net: mattock