OpenVPN 2.6.20 released
Yuriy Darnobyt <[email protected]>
| Newsgroups | gmane.network.openvpn.devel,gmane.network.openvpn.user |
|---|---|
| Message-ID | <[email protected]> |
The OpenVPN community project team is proud to release OpenVPN 2.6.20. This is a bugfix release containing security fixes. For details see [Changes.rst](https://github.com/OpenVPN/openvpn/blob/v2.6.20/Changes.rst) Security fixes: * CVE-2026-40215: fix race condition in TLS handshake that could lead to leaking of packet data from a previous handshake under specific circumstances * CVE-2026-35058: fix server ASSERT() on receiving a suitably malformed packet with a valid tls-crypt-v2 key Bugfixes: * management: stop periodic bytecount output on mgmt client disconnection * FreeBSD: make DCO work on systems with no IPv4 support * FreeBSD: fix compilation with --enable-async-push on FreeBSD 15 * Linux: make DCO work on big endian architectures (MIPS, PowerPC) * Windows: fix deinstallation progress bar on adapter deletion. * Linux: fix problem with DCO kernel notifications getting lost, leading to overcounting of number of connected clients and general confusion between kernel and userland regarding peer status (Github openvpn#900, openvpn#918, openvpn#931, openvpn#919, openvpn#945) - this is a backport of the fixes in 2.7 plus the infrastructural changes around DCO needed to support it. Windows MSI changes since 2.6.19-I001: * Built against OpenSSL 3.6.2 * Included openvpn-gui updated to 11.63.0.0 * Translation cleanup. Remove obsolete strings related to support for OpenVPN < 2.0 * Translation updates. More details can be found in the Changes document: <https://github.com/OpenVPN/openvpn/blob/v2.6.20/Changes.rst <https://github.com/OpenVPN/openvpn/blob/v2./Changes.rst>> Source code and Windows installers can be downloaded from our download page: <https://openvpn.net/community/> Packages for Debian, Ubuntu, Fedora, RHEL, and openSUSE are available in the various official Community repositories: <https://community.openvpn.net/Pages/OpenVPN%20software%20repos> Kind regards, Yuriy Darnobyt _______________________________________________ Openvpn-devel mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openvpn-devel