Security Advisory

CVE-2025-2704

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-02 21:00:58
Last updated 2025-10-23 10:53:34
Assigner OpenVPN
State PUBLISHED

Description

OpenVPN version 2.6.1 through 2.6.13 in server mode using TLS-crypt-v2 allows remote attackers to trigger a denial of service by corrupting and replaying network packets in the early handshake phase