1 UPDATED package

openvpn - a full-featured SSL VPN solution
* Thu Feb 12 2026 Nikolay A. Fetisov <naf@altlinux> 2.6.19-alt1
- New version
- Fixes:
   + CVE-2025-13751: Windows/interactive service erroneous exit on error
   + CVE-2025-13086: fix memcmp check for the HMAC 3-way handshake verification
   + Fix errors checks in auth plugin/script handling
   + Fix socket FDs leaking to child processes for incoming TCP connections
   + Repair client-side interaction on reconnect between DCO event handling
     and '--persist-tun'
* Wed Nov 05 2025 Nikolay A. Fetisov <naf@altlinux> 2.6.15-alt1
- New version
- Fixes:
  + CVE-2025-2704: possible ASSERT() on OpenVPN servers using --tls-crypt-v2
  + Improve server-side handling of clients sending too long usernames/passwords
  + Bring back configuring of broadcast address on Linux tun/tap interface
  + Linux DCO: repair source IP selection for --multihome
  + Correctly handle case of "route installation fails" for an already-existing
    routes
- Fix format of the OpenSSL license exception in License tag
* Thu Aug 01 2024 Nikolay A. Fetisov <naf@altlinux> 2.6.12-alt1
- New version
- Fixes:
  + CVE-2024-5594: filter control channel messages with nonprintable chars
  + CVE-2024-28882: only call schedule_exit() once (on a given peer)
  + CVE-2024-4877: Windows: harden interactive service pipe
  + Fix bug preventing Http-proxy credentials caching
* Wed Mar 27 2024 Nikolay A. Fetisov <naf@altlinux> 2.6.10-alt1
- New version
- Fixes (all CVE are Windows-specific):
  + CVE-2024-27459: Windows: fix a possible stack overflow
  + CVE-2024-24974: Windows: disallow remote access to the service pipe
  + CVE-2024-27903: Windows: disallow loading of plugins from untrusted dirs
  + CVE-2023-7235: Windows: local privilege escalation via Windows Installer
* Fri Nov 17 2023 Nikolay A. Fetisov <naf@altlinux> 2.6.8-alt1
- New version
  - Fix SIGSEGV crash sometimes after an unsuccessful TLS handshake
* Sun Nov 12 2023 Nikolay A. Fetisov <naf@altlinux> 2.6.7-alt1
- New version
- Fixes:
  + CVE-2023-46850 Incorrectly use a send buffer after it has been free()d
  + CVE-2023-46849 Division by zero when "--fragment" is used
* Sun Oct 29 2023 Nikolay A. Fetisov <naf@altlinux> 2.6.6-alt1
- New version (Closes: 46933)
   - certificate pinning/verify peer fingerprint authentification
     for small setups without the need for a PKI
   - static key mode (non-TLS) has been deprecated
   - TLS 1.0 and 1.1 are deprecated
   - built-in packet filtering functionality has been removed
   - compatibility mode (--compat-mode) to work with older servers
* Sun Jan 15 2023 Nikolay A. Fetisov <naf@altlinux> 2.5.8-alt1
- New version
* Mon May 16 2022 Nikolay A. Fetisov <naf@altlinux> 2.5.6-alt1

Total 18274 source packages.
_______________________________________________
Sisyphus-cybertalk mailing list
[email protected]
https://lists.altlinux.org/mailman/listinfo/sisyphus-cybertalk

Reply via email to