Security Advisory
CVE-2023-46849
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.