Security Advisory

CVE-2023-46849

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-11-11 00:05:13
Last updated 2025-06-11 14:30:02
Assigner OpenVPN
State PUBLISHED

Description

Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.