CVE-2024-5198 Information

Description

OpenVPN ovpn-dco for Windows version 1.1.1 allows an unprivileged local attacker to send I/O control messages with invalid data to the driver resulting in a NULL pointer dereference leading to a system halt.

Reference

https://community.openvpn.net/openvpn/wiki/CVE-2024-5198

Share on: