OpenVPN 2.6.10 Community Edition

CPE Details

OpenVPN 2.6.10 Community Edition
2.6.10
2025-04-25
15h16 +00:00
2025-04-25
15h16 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openvpn:openvpn:2.6.10:*:*:*:community:*:*:*

Informations

Vendor

openvpn

Product

openvpn

Version

2.6.10

Software Edition

community

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-4877 2025-04-03 15h11 +00:00 OpenVPN version 2.4.0 through 2.6.10 on Windows allows an external, lesser privileged process to create a named pipe which the OpenVPN GUI component would connect to allowing it to escalate its privileges
8.8
High
CVE-2025-2704 2025-04-02 21h00 +00:00 OpenVPN version 2.6.1 through 2.6.13 in server mode using TLS-crypt-v2 allows remote attackers to trigger a denial of service by corrupting and replaying network packets in the early handshake phase
7.5
High
CVE-2024-5594 2025-01-06 13h52 +00:00 OpenVPN before 2.6.11 does not santize PUSH_REPLY messages properly which an attacker controlling the server can use to inject unexpected arbitrary data ending up in client logs.
9.1
Critical
CVE-2024-28882 2024-07-08 21h30 +00:00 OpenVPN from 2.6.0 through 2.6.10 in a server role accepts multiple exit notifications from authenticated clients which will extend the validity of a closing session
4.3
Medium