CVE-2026-84732 - Reliability layer unbounded TLS timeout and acks for non-outstanding packets

OpenVPN 2.x allows attackers to potentially cause a denial of service against the control channel reliability layer, either by driving the reliable TLS retransmission timeout to grow without bound, or by sending acknowledgements for packets that cannot be outstanding.

OpenVPN version 2.6.22 and 2.7.6 are affected. This is fixed in version 2.7.7.

CVE Record: CVE-2026-84732

Github:

Release notes:

Reported-By: Mark Bregman (Fox-IT)

0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9