Re: Critical OpenVPN Zero-Day Flaws Affecting Millions of Endpoints Across the Globe

Turritopsis Dohrnii Teo En Ming via Openvpn-users <[email protected]> Wed, 15 May 2024 15:08:17 +0000
Newsgroups gmane.network.openvpn.user
Message-ID <9EWzFPxL1H-XBtevQwibKnjPZE5Yx9vOxZgRvbnmQ9faQv2s0ARTLA8sdAaOsJoI8SBqyviCQQzJ-GENK_9w7DQOnlw6YPWy7kK4M4EcB9M=@protonmail.com>
On Monday, May 13th, 2024 at 9:08 PM, Gert Doering <[email protected]> wrote:

> Hi,
> 
> On Mon, May 13, 2024 at 12:59:06PM +0000, Turritopsis Dohrnii Teo En Ming via Openvpn-users wrote:
> 
> > Subject: Critical OpenVPN Zero-Day Flaws Affecting Millions of Endpoints Across the Globe
> > 
> > Good day from Singapore,
> > 
> > I have just read this article and I would like to share it with all of you here.
> > 
> > Article: Critical OpenVPN Zero-Day Flaws Affecting Millions of Endpoints Across the Globe
> > Link: https://cybersecuritynews.com/openvpn-zero-day-flaws/
> 
> 
> A link to that story has been posted here before (by mike tancsa, last
> Friday), and our response still holds...
> 
> Upgrade to 2.5.10 or 2.6.10 if you happen to be on Windows and use
> plugins, and put them in a path where an untrusted other user could
> modify them. If you are not using plugins, or they are in a non-writeable
> path, upgrading is still a good idea (we always fix bugs), but there are
> no attack angles open.
> 
> Also, calling these "Zero-Day" is more "fishing for sensations" than
> honest, since we've fixed these 4 CVEs weeks ago...
> 
> gert
> 

Noted with thanks.

Regards,

Mr. Turritopsis Dohrnii Teo En Ming
Targeted Individual in Singapore
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.