Blame
| 7cc93a | Samuli Seppänen | 2025-02-27 10:19:11 | 1 | # CVE-2024-5198: OpenVPN ovpn-dco for Windows version 1.1.1 allows an unprivileged local attacker to send I/O control messages with invalid data to the driver resulting in a NULL pointer dereference leading to a system halt. |
| c4f02d | Samuli Seppänen | 2025-01-29 08:37:37 | 2 | |
| 7cc93a | Samuli Seppänen | 2025-02-27 10:19:11 | 3 | Affected versions: ovpn-dco Windows driver 1.1.1, OpenVPN 2.6.10-I002 Windows client (older and newer versions of the driver and Windows client are not affected) |
| c4f02d | Samuli Seppänen | 2025-01-29 08:37:37 | 4 | |
| 7cc93a | Samuli Seppänen | 2025-02-27 10:19:11 | 5 | ### References |
| 6 | * GitHub PR: https://github.com/OpenVPN/ovpn-dco-win/pull/70 |
|||
| 918fd8 | novaflash | 2025-07-02 16:30:44 | 7 | * CVE record: https://www.cve.org/CVERecord?id=CVE-2024-5198 |
| 7cc93a | Samuli Seppänen | 2025-02-27 10:19:11 | 8 | * Reported-By: Lukas Jokubauskas <lukas.jokubauskas@nordsec.com> |
