OpenVPN 2.x before 2.0.11, 2.1.x, 2.2.x before 2.2.3, and 2.3.x before 2.3.6 allows remote authenticated users to cause a denial of service (server crash) via a small control channel packet.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.3.2-7ubuntu3.1", "binary_name": "openvpn" } ], "ubuntu_priority": "medium" }