September 26, 2017
View 9779cef

Preparing OpenVPN 2.3.18 release

David Sommerseth authored on 2017/09/26 06:42:48
September 4, 2017
View 5071f67

OpenSSL: Always set SSL_OP_CIPHER_SERVER_PREFERENCE flag

Szilárd Pfeiffer authored on 2017/09/04 17:10:12
August 15, 2017
View fce3437

Fix bounds check in read_key()

Steffan Karger authored on 2017/08/15 17:04:33
August 9, 2017
View 49e12a3

Deprecate --ns-cert-type

Steffan Karger authored on 2017/08/09 05:00:47
June 27, 2017
View ca870b1

crypto: correct typ0 in error message

Antonio Quartulli authored on 2017/06/27 21:00:47
June 20, 2017
View 8ec9cfd

Preparing for release v2.3.17 (ChangeLog, version.m4, Changes.rst)

Gert Doering authored on 2017/06/20 04:02:22
June 19, 2017
View 1dde0cd

Fix potential double-free in --x509-alt-username (CVE-2017-7521)

Steffan Karger authored on 2017/06/19 18:28:40
View a6dbec1

Restrict --x509-alt-username extension types

Steffan Karger authored on 2017/06/19 18:28:39
View 84e1775

Fix remote-triggerable memory leaks (CVE-2017-7521)

Steffan Karger authored on 2017/06/19 18:28:38
View 888b0dc

auth-token with auth-nocache fix broke --disable-crypto builds

David Sommerseth authored on 2017/06/19 22:05:07
View 4d343fb

Fix potential 1-byte overread in TCP option parsing.

Gert Doering authored on 2017/06/19 04:41:04
June 16, 2017
View 479b6d1

Fix a null-pointer dereference in establish_http_proxy_passthru()

Guido Vranken authored on 2017/06/16 09:58:56
June 14, 2017
View fc61d1b

Fix remotely-triggerable ASSERT() on malformed IPv6 packet.

Gert Doering authored on 2017/06/14 05:08:32
May 19, 2017
View f38a4a1

Prevent two kinds of stack buffer OOB reads and a crash for invalid input data

Guido Vranken authored on 2017/05/19 21:04:25
February 25, 2017
View 199ef13

backport: Ignore auth-nocache for auth-user-pass if auth-token is pushed

David Sommerseth authored on 2017/02/25 22:10:29