Out-of-Bounds Write Vulnerability in OpenVPN on Windows
CVE-2026-81738
2.3LOW
What is CVE-2026-81738?
A vulnerability in OpenVPN versions 2.5.0 through 2.7.6 on Windows allows attackers to exploit the tap-windows6 driver. By crafting specific DOMAIN-SEARCH entries, an out-of-bounds write can be triggered, potentially compromising the system's integrity and security. Users are advised to update their OpenVPN installations to mitigate potential risks.
Affected Version(s)
OpenVPN Windows 2.5.0 <= 2.7.6