Insufficient argument validation in OpenVPN 2.7_alpha1 through 2.7_rc1 allows an attacker to trigger a heap buffer over-read when parsing IP addresses
| Software | From | Fixed in |
|---|---|---|
| openvpn / openvpn | 2.6.13 | 2.6.13.x |
| openvpn / openvpn | 2.7-alpha1 | 2.7-alpha1.x |
| openvpn / openvpn | 2.7-alpha2 | 2.7-alpha2.x |
| openvpn / openvpn | 2.7-alpha3 | 2.7-alpha3.x |
| openvpn / openvpn | 2.7-beta1 | 2.7-beta1.x |
| openvpn / openvpn | 2.7-beta2 | 2.7-beta2.x |
| openvpn / openvpn | 2.7-beta3 | 2.7-beta3.x |
| openvpn / openvpn | 2.7-rc1 | 2.7-rc1.x |