July 2, 2024, 1:44 p.m. |

Ubuntu security notices ubuntu.com

Reynir Björnsson discovered that OpenVPN incorrectly handled terminating
client connections. A remote authenticated client could possibly use this
issue to keep the connection active, bypassing certain security policies.
This issue only affected Ubuntu 23.10, and Ubuntu 24.04 LTS.
(CVE-2024-28882)

Reynir Björnsson discovered that OpenVPN incorrectly handled certain
control channel messages with nonprintable characters. A remote attacker
could possibly use this issue to cause OpenVPN to consume resources, or
fill up log files with garbage, leading to a denial …

attacker bypassing channel characters client connection connections control cve cve-2024 issue lts messages openvpn policies security security policies ubuntu ubuntu 23.10 ubuntu 24.04 ubuntu 24.04 lts usn vulnerabilities

System Administrator, Senior

@ Booz Allen Hamilton | USA, NV, Nellis AFB (4370 Washington Blvd)

Staff Systems Engineer

@ Commonwealth Bank | Bengaluru - Manyata Tech Park Road

(IND) Software Engineer III

@ Walmart | IN KA BANGALORE Home Office Building 10

Software Engineer III

@ Walmart | IN KA BANGALORE Home Office Building 11

Systems Engineer - Global Accounts

@ Palo Alto Networks | London, United Kingdom

Principal Support Engineering Specialist - SASE

@ Palo Alto Networks | Bengaluru, India