Package openvpn: Information

    Source package: openvpn
    Version: 2.6.12-alt1
    Build time:  Aug 2, 2024, 10:10 AM
    Category: System/Servers
    Report package bug
    License: GPLv2 with OpenSSL exception
    Summary: a full-featured SSL VPN solution
    Description: 
    OpenVPN is a full-featured SSL VPN solution which can accomodate
    a wide range  of configurations,  including road warrior access,
    home/office/campus  telecommuting,  WiFi security, secure branch
    office  linking,  and enterprise-scale  remote access  solutions
    with load balancing, failover, and fine-grained access-controls.

    List of RPM packages built from this SRPM:
    openvpn (riscv64)
    openvpn-debuginfo (riscv64)
    openvpn-devel (noarch)
    openvpn-docs (noarch)
    openvpn-plugins (riscv64)
    openvpn-plugins-debuginfo (riscv64)

    Maintainer: Nikolay A. Fetisov

    List of contributors:
    Nikolay A. Fetisov
    Gleb Fotengauer-Malinovskiy
    qa-robot

      1. libpam-devel
      2. iproute2
      3. libpkcs11-helper-devel
      4. libselinux-devel
      5. cmake
      6. python3-module-docutils
      7. libsystemd-devel
      8. net-tools
      9. rpm-build-licenses
      10. libcap-ng-devel
      11. git-core
      12. glibc-devel-static
      13. liblz4-devel
      14. liblzo2-devel
      15. time

    Last changed


    Aug. 1, 2024 Nikolay A. Fetisov 2.6.12-alt1
    - New version
    - Fixes:
      + CVE-2024-5594: filter control channel messages with nonprintable chars
      + CVE-2024-28882: only call schedule_exit() once (on a given peer)
      + CVE-2024-4877: Windows: harden interactive service pipe
      + Fix bug preventing Http-proxy credentials caching
    March 27, 2024 Nikolay A. Fetisov 2.6.10-alt1
    - New version
    - Fixes (all CVE are Windows-specific):
      + CVE-2024-27459: Windows: fix a possible stack overflow
      + CVE-2024-24974: Windows: disallow remote access to the service pipe
      + CVE-2024-27903: Windows: disallow loading of plugins from untrusted dirs
      + CVE-2023-7235: Windows: local privilege escalation via Windows Installer
    Nov. 17, 2023 Nikolay A. Fetisov 2.6.8-alt1
    - New version
      - Fix SIGSEGV crash sometimes after an unsuccessful TLS handshake