Description
Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.
Remediation
References
Related Vulnerabilities
Drupal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2010-2471)
Joomla! Core 3.x.x Cross-Site Scripting (3.1.2 - 3.8.7)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-29209)
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-21014)