[CLSA-2026:1788774936] Fix CVE(s): CVE-2026-13698
Type:
security
Severity:
Important
Release date:
2026-09-07 09:55:47 UTC
Description:
* SECURITY UPDATE: Memory leak via repeated tls-crypt key setup - debian/patches/CVE-2026-13698.patch: ensure tls-crypt keys are not set up twice by directly inferring whether the key context is already initialised - CVE-2026-13698
CVEs fixed:
Updated packages:
  • openvpn_2.5.1-3+deb11u4+tuxcare.els1_amd64.deb
    sha:fffdc6eef680a5dbcf6c7d64bb82d625351e255a
  • openvpn_2.5.1-3+deb11u4+tuxcare.els1_arm64.deb
    sha:745fbd2f4c5311131af79f9ccb2738c8fc7c30d2
  • openvpn_2.5.1-3+deb11u4+tuxcare.els1_armel.deb
    sha:d8eb8c0190c64c065008e3f6b1b03ced1cb7dd37
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.