OpenVPN 2.7_beta2 released
Yuriy Darnobyt <[email protected]> Thu, 25 Sep 2025 17:42:01 +0300
| Newsgroups | gmane.network.openvpn.announce |
|---|---|
| Message-ID | <010B9529-6C1E-454A-9846-26AC9581AFE9__8407.62551394931$1758811701$gmane$org@openvpn.com> |
--===============5436075384323081034== Content-Type: multipart/alternative; boundary="Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C" --Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset=us-ascii The OpenVPN community project team is proud to release OpenVPN = 2.7_beta2. This is a second beta which includes important bugfixes. Feature changes since 2.7_beta1: * greatly improved event log handling for the Windows interactive = service - this brings build system changes and a new openvpnservmsg.dll Important bug fixes since 2.7_beta1: * add proper input sanitation to DNS strings to prevent an attack coming = from a trusted-but-malicous OpenVPN server (CVE-2025-10680, affects unixoid systems with = --dns-updown scripts and windows using the built-in powershell call) * bugfixes when using multi-socket on windows (properly recognize that = TCP server mode does not work with DCO, properly handle TCP multi-socket server setups without DCO) * bring back configuring of IPv4 broadcast addresses on Linux * repair "--dhcp-option DNS" setting in combination with DHCP (TAP) or = "--up" scripts (Github: OpenVPN/openvpn#839, OpenVPN/openvpn#840) More details can be found in the Changes document: <https://github.com/OpenVPN/openvpn/blob/master/Changes.rst> Source code and Windows installers can be downloaded from our download = page: <https://openvpn.net/community-downloads/> Packages for Debian, Ubuntu, Fedora, RHEL, and openSUSE are available in = the various official Community repositories: <https://community.openvpn.net/Pages/OpenVPN%20software%20repos> Kind regards, Yuriy Darnobyt= --Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C Content-Transfer-Encoding: quoted-printable Content-Type: text/html; charset=us-ascii <html><head><meta http-equiv=3D"content-type" content=3D"text/html; = charset=3Dus-ascii"></head><body style=3D"overflow-wrap: break-word; = -webkit-nbsp-mode: space; line-break: = after-white-space;"><div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">The OpenVPN community project team = is proud to release OpenVPN 2.7_beta2.</span></font></div><div><font = color=3D"#000000">This is a second beta which includes important = bugfixes.</font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);"><br></span></font></div><div><font = color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, 0);">Feature = changes since 2.7_beta1:</span></font></div><div><font = color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, = 0);"><br></span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">* greatly improved event log = handling for the Windows interactive service - this brings build = system</span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">changes and a new = openvpnservmsg.dll</span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);"><br></span></font></div><div><font = color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, 0);">Important = bug fixes since 2.7_beta1:</span></font></div><div><font = color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, = 0);"><br></span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">* add proper input sanitation to = DNS strings to prevent an attack coming from a = trusted-but-malicous</span></font></div><div><font color=3D"#000000"><span= style=3D"caret-color: rgb(0, 0, 0);">OpenVPN server (CVE-2025-10680, = affects unixoid systems with --dns-updown scripts and = windows</span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">using the built-in powershell = call)</span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">* bugfixes when using multi-socket = on windows (properly recognize that TCP server mode does not = work</span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">with DCO, properly handle TCP = multi-socket server setups without DCO)</span></font></div><div><font = color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, 0);">* bring = back configuring of IPv4 broadcast addresses on = Linux</span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">* repair "--dhcp-option DNS" = setting in combination with DHCP (TAP) or "--up" = scripts</span></font></div><div><font color=3D"#000000"><span = style=3D"caret-color: rgb(0, 0, 0);">(Github: OpenVPN/openvpn#839, = OpenVPN/openvpn#840)</span></font></div></div><br style=3D"caret-color: = rgb(0, 0, 0); color: rgb(0, 0, 0);"><span style=3D"caret-color: rgb(0, = 0, 0); color: rgb(0, 0, 0);">More details can be found in the Changes = document:</span><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, = 0);"><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><</span><a = href=3D"https://github.com/OpenVPN/openvpn/blob/master/Changes.rst">https:= //github.com/OpenVPN/openvpn/blob/master/Changes.rst</a><span = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">></span><br = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><br = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">Source code = and Windows installers can be downloaded from our download = page:</span><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, = 0);"><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><</span><a = href=3D"https://openvpn.net/community-downloads/">https://openvpn.net/comm= unity-downloads/</a><span style=3D"caret-color: rgb(0, 0, 0); color: = rgb(0, 0, 0);">></span><br style=3D"caret-color: rgb(0, 0, 0); color: = rgb(0, 0, 0);"><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, = 0);"><span style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, = 0);">Packages for Debian, Ubuntu, Fedora, RHEL, and openSUSE are = available in the various</span><br style=3D"caret-color: rgb(0, 0, 0); = color: rgb(0, 0, 0);"><span style=3D"caret-color: rgb(0, 0, 0); color: = rgb(0, 0, 0);">official Community repositories:</span><br = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><br = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><</span><a = href=3D"https://community.openvpn.net/Pages/OpenVPN%20software%20repos">ht= tps://community.openvpn.net/Pages/OpenVPN%20software%20repos</a><span = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">></span><br = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><br = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span = style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">Kind = regards,</span><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, = 0);"><font color=3D"#000000">Yuriy Darnobyt</font></body></html>= --Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C-- --===============5436075384323081034== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline --===============5436075384323081034== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ Openvpn-announce mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openvpn-announce --===============5436075384323081034==--