OpenVPN 2.7_beta2 released

Yuriy Darnobyt <[email protected]> Thu, 25 Sep 2025 17:42:01 +0300
Newsgroups gmane.network.openvpn.announce
Message-ID <010B9529-6C1E-454A-9846-26AC9581AFE9__8407.62551394931$1758811701$gmane$org@openvpn.com>
--===============5436075384323081034==
Content-Type: multipart/alternative;
	boundary="Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C"


--Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain;
	charset=us-ascii

The OpenVPN community project team is proud to release OpenVPN =
2.7_beta2.
This is a second beta which includes important bugfixes.

Feature changes since 2.7_beta1:

* greatly improved event log handling for the Windows interactive =
service - this brings build system
changes and a new openvpnservmsg.dll

Important bug fixes since 2.7_beta1:

* add proper input sanitation to DNS strings to prevent an attack coming =
from a trusted-but-malicous
OpenVPN server (CVE-2025-10680, affects unixoid systems with =
--dns-updown scripts and windows
using the built-in powershell call)
* bugfixes when using multi-socket on windows (properly recognize that =
TCP server mode does not work
with DCO, properly handle TCP multi-socket server setups without DCO)
* bring back configuring of IPv4 broadcast addresses on Linux
* repair "--dhcp-option DNS" setting in combination with DHCP (TAP) or =
"--up" scripts
(Github: OpenVPN/openvpn#839, OpenVPN/openvpn#840)

More details can be found in the Changes document:

<https://github.com/OpenVPN/openvpn/blob/master/Changes.rst>

Source code and Windows installers can be downloaded from our download =
page:

<https://openvpn.net/community-downloads/>

Packages for Debian, Ubuntu, Fedora, RHEL, and openSUSE are available in =
the various
official Community repositories:

<https://community.openvpn.net/Pages/OpenVPN%20software%20repos>

Kind regards,
Yuriy Darnobyt=

--Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C
Content-Transfer-Encoding: quoted-printable
Content-Type: text/html;
	charset=us-ascii

<html><head><meta http-equiv=3D"content-type" content=3D"text/html; =
charset=3Dus-ascii"></head><body style=3D"overflow-wrap: break-word; =
-webkit-nbsp-mode: space; line-break: =
after-white-space;"><div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">The OpenVPN community project team =
is proud to release OpenVPN 2.7_beta2.</span></font></div><div><font =
color=3D"#000000">This is a second beta which includes important =
bugfixes.</font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);"><br></span></font></div><div><font =
color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, 0);">Feature =
changes since 2.7_beta1:</span></font></div><div><font =
color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, =
0);"><br></span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">* greatly improved event log =
handling for the Windows interactive service - this brings build =
system</span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">changes and a new =
openvpnservmsg.dll</span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);"><br></span></font></div><div><font =
color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, 0);">Important =
bug fixes since 2.7_beta1:</span></font></div><div><font =
color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, =
0);"><br></span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">* add proper input sanitation to =
DNS strings to prevent an attack coming from a =
trusted-but-malicous</span></font></div><div><font color=3D"#000000"><span=
 style=3D"caret-color: rgb(0, 0, 0);">OpenVPN server (CVE-2025-10680, =
affects unixoid systems with --dns-updown scripts and =
windows</span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">using the built-in powershell =
call)</span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">* bugfixes when using multi-socket =
on windows (properly recognize that TCP server mode does not =
work</span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">with DCO, properly handle TCP =
multi-socket server setups without DCO)</span></font></div><div><font =
color=3D"#000000"><span style=3D"caret-color: rgb(0, 0, 0);">* bring =
back configuring of IPv4 broadcast addresses on =
Linux</span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">* repair "--dhcp-option DNS" =
setting in combination with DHCP (TAP) or "--up" =
scripts</span></font></div><div><font color=3D"#000000"><span =
style=3D"caret-color: rgb(0, 0, 0);">(Github: OpenVPN/openvpn#839, =
OpenVPN/openvpn#840)</span></font></div></div><br style=3D"caret-color: =
rgb(0, 0, 0); color: rgb(0, 0, 0);"><span style=3D"caret-color: rgb(0, =
0, 0); color: rgb(0, 0, 0);">More details can be found in the Changes =
document:</span><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, =
0);"><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">&lt;</span><a =
href=3D"https://github.com/OpenVPN/openvpn/blob/master/Changes.rst">https:=
//github.com/OpenVPN/openvpn/blob/master/Changes.rst</a><span =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">&gt;</span><br =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><br =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">Source code =
and Windows installers can be downloaded from our download =
page:</span><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, =
0);"><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">&lt;</span><a =
href=3D"https://openvpn.net/community-downloads/">https://openvpn.net/comm=
unity-downloads/</a><span style=3D"caret-color: rgb(0, 0, 0); color: =
rgb(0, 0, 0);">&gt;</span><br style=3D"caret-color: rgb(0, 0, 0); color: =
rgb(0, 0, 0);"><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, =
0);"><span style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, =
0);">Packages for Debian, Ubuntu, Fedora, RHEL, and openSUSE are =
available in the various</span><br style=3D"caret-color: rgb(0, 0, 0); =
color: rgb(0, 0, 0);"><span style=3D"caret-color: rgb(0, 0, 0); color: =
rgb(0, 0, 0);">official Community repositories:</span><br =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><br =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">&lt;</span><a =
href=3D"https://community.openvpn.net/Pages/OpenVPN%20software%20repos">ht=
tps://community.openvpn.net/Pages/OpenVPN%20software%20repos</a><span =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">&gt;</span><br =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><br =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);"><span =
style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, 0);">Kind =
regards,</span><br style=3D"caret-color: rgb(0, 0, 0); color: rgb(0, 0, =
0);"><font color=3D"#000000">Yuriy Darnobyt</font></body></html>=

--Apple-Mail=_C7AF659C-E12B-4E60-90D4-B4B648CF699C--


--===============5436075384323081034==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline


--===============5436075384323081034==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
Openvpn-announce mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openvpn-announce

--===============5436075384323081034==--