Ubuntu Fixes Two OpenVPN Vulnerabilities

30-July-24

Canonical has released security updates for Ubuntu to address two vulnerabilities in the OpenVPN software, identified as CVE-2024-28882 and CVE-2024-5594. These vulnerabilities affected various Ubuntu releases, including 24.04 LTS, 23.10, 22.04 LTS, and 20.04 LTS. CVE-2024-28882 allowed authenticated clients to keep connections active, while CVE-2024-5594 could lead to denial of service by causing high CPU load or filling log files. To protect systems, users should update OpenVPN to the latest versions available for their Ubuntu release. For end-of-life Ubuntu systems, extended security support can be obtained through services like Ubuntu Pro or TuxCare’s Extended Lifecycle Support.

Read More…