This update for openvpn fixes the following issues:
CVE-2026-13122: denial of service via a malformed authentication token that triggers a reachable assertion when
external-auth is enabled (bsc#1270413).
CVE-2026-13698: denial of service via memory leak triggered by remote attackers with a valid tls-crypt-v2 client key
(bsc#1270414).