Skip to content

Commit

Permalink
Preparing release 2.5.11
Browse files Browse the repository at this point in the history
version.m4, ChangeLog, Changes.rst

Signed-off-by: Gert Doering <[email protected]>
  • Loading branch information
cron2 committed Jul 18, 2024
1 parent dddb87f commit 6fb2a25
Show file tree
Hide file tree
Showing 3 changed files with 20 additions and 2 deletions.
6 changes: 6 additions & 0 deletions ChangeLog
Original file line number Diff line number Diff line change
@@ -1,6 +1,12 @@
OpenVPN Change Log
Copyright (C) 2002-2022 OpenVPN Inc <[email protected]>

2024.07.18 -- Version 2.5.11

Arne Schwabe (2):
Properly handle null bytes and invalid characters in control messages
Allow trailing \r and \n in control channel message

2024.03.21 -- Version 2.5.10

Arne Schwabe (1):
Expand Down
12 changes: 12 additions & 0 deletions Changes.rst
Original file line number Diff line number Diff line change
@@ -1,3 +1,15 @@
Overview of changes in 2.5.11
=============================
Security fixes
--------------
- CVE-2024-5594: control channel: refuse control channel messages with
nonprintable characters in them. Security scope: a malicious openvpn
peer can send garbage to openvpn log, or cause high CPU load.
(Reynir Björnsson)

(Backport of the security fix in 2.6.11 and the fix for the bugfix
in 2.6.12)

Overview of changes in 2.5.10
=============================
Security fixes
Expand Down
4 changes: 2 additions & 2 deletions version.m4
Original file line number Diff line number Diff line change
Expand Up @@ -3,12 +3,12 @@ define([PRODUCT_NAME], [OpenVPN])
define([PRODUCT_TARNAME], [openvpn])
define([PRODUCT_VERSION_MAJOR], [2])
define([PRODUCT_VERSION_MINOR], [5])
define([PRODUCT_VERSION_PATCH], [.10])
define([PRODUCT_VERSION_PATCH], [.11])
m4_append([PRODUCT_VERSION], [PRODUCT_VERSION_MAJOR])
m4_append([PRODUCT_VERSION], [PRODUCT_VERSION_MINOR], [[.]])
m4_append([PRODUCT_VERSION], [PRODUCT_VERSION_PATCH], [[]])
define([PRODUCT_BUGREPORT], [[email protected]])
define([PRODUCT_VERSION_RESOURCE], [2,5,10,0])
define([PRODUCT_VERSION_RESOURCE], [2,5,11,0])
dnl define the TAP version
define([PRODUCT_TAP_WIN_COMPONENT_ID], [tap0901])
define([PRODUCT_TAP_WIN_MIN_MAJOR], [9])
Expand Down

0 comments on commit 6fb2a25

Please sign in to comment.