ELA-1762-1 openvpn security update (by ) (opens in new tab)
Package : openvpn Version : 2.4.0-6+deb9u6 (stretch), 2.4.7-1+deb10u3 (buster) Related CVEs : A vulnerability has been discovered in OpenVPN, a virtual private network application. CVE-2026-40215 A race condition allows remote attackers to potentially cause a server crash or leak heap memory via a use-after-free triggered during TLS session promotion.
Read the original article