-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256
A denial of service security vulnerability affecting OpenVPN-NL servers was recently brought to our attention. The vulnerability enables authenticated clients to stop openvpn server instances. The vulnerability affects server availability only. Confidentiality and authenticity of traffic are *not* affected.
A fixed version of OpenVPN-NL will be released today (1st Dec 2014) at around 18:00 UTC (20:00 CET). Upstream (regular OpenVPN) will also release a fixed version around the same time. More details will be released to the public once the fixed versions are available.
list-openvpn-nl@lists.fox-it.com