216.73.217.22

CVE-2026-2738

· Published 19/02/2026 21:18 · Modified 20/02/2026 13:49

Labels: CVE-2026-2738 2026-02-19CVE-2026-2738CWE-131[email protected]

Essential information

Published
19/02/2026 21:18
Modified
20/02/2026 13:49
Author
Creator
CVSS
5.6 MEDIUM (v3) 5.6 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Buffer overflow in ovpn‑dco‑win version 2.8.0 allows local attackers to cause a system crash by sending too large packets to the remote peer when the AEAD tag appears at the end of the encrypted packet

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
openvpn / ovpn-dco-win cpe:2.3:a:openvpn:ovpn-dco-win:2.8.0:*:*:*:*:*:*:*

References