SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-82325

MEDIUM · CVSS 6.8 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-09-07 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the OpenVPN ovpn-dco-win driver (versions 2.5.0 to 2.8.6) allows local authenticated users to exploit crafted control messages, potentially leading to system crashes. Organizations utilizing affected versions of OpenVPN should prioritize patching this vulnerability to mitigate risks associated with local user exploitation and system stability.

CVE
CVE-2026-82325
Severity
MEDIUM
CVSS
6.8
EPSS
0.10%

Original NVD Description

A use-after-free vulnerability in the OpenVPN ovpn-dco-win driver version 2.5.0 through 2.8.6 allows local authenticated users to cause a system crash via crafted control messages