Buffer overflow in OpenVPN ovpn-dco-win version 1.3.0 and earlier and version 2.5.8 and earlier allows a local user process to send a too large control message buffer to the kernel driver resulting in a system crash
2025-06-20T07:15:26.367
2025-08-21T20:39:10.787
Analyzed
CVSSv3.1: 5.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | openvpn | ovpn-dco-win | ≤ 1.3.0 | Yes |
| Application | openvpn | ovpn-dco-win | ≤ 2.5.8 | Yes |