packages/net/openvpn/patches
Ivan Pavlov 74a66189f1 openvpn: update to 2.6.14
Security fixes:

​CVE-2025-2704: fix possible ASSERT() on OpenVPN servers using --tls-crypt-v2
 Security scope: OpenVPN servers between 2.6.1 and 2.6.13 using --tls-crypt-v2 can be made
 to abort with an ASSERT() message by sending a particular combination of authenticated and
 malformed packets. No crypto integrity is violated, no data is leaked, and no remote code
 execution is possible. This bug does not affect OpenVPN clients.

For details refer to https://github.com/OpenVPN/openvpn/blob/v2.6.14/Changes.rst

Signed-off-by: Ivan Pavlov <AuthorReflex@gmail.com>
2025-04-04 14:41:46 +02:00
..
100-mbedtls-disable-runtime-version-check.patch openvpn: update to 2.6.14 2025-04-04 14:41:46 +02:00
101-Fix-EVP_PKEY_CTX_-compilation-with-wolfSSL.patch openvpn: update to 2.6.11 2024-06-21 15:28:10 -07:00
102-Disable-external-ec-key-support-when-building-with-wolfSSL.patch openvpn: update to 2.6.8 2023-11-19 12:24:11 -08:00
103-define-LN_serialNumber-for-wolfSSL.patch openvpn: update to 2.6.8 2023-11-19 12:24:11 -08:00