Heap-based buffer overflow in OpenVPN Data Channel Offload driver for Windows - CVE-2026-2738
Published: April 24, 2026
OpenVPN Data Channel Offload driver for Windows
Detailed vulnerability description
The vulnerability allows a remote user to cause a denial of service.
The vulnerability exists due to a heap-based buffer overflow in the ovpn-dco-win data channel offload driver when processing encrypted packets from a connected OpenVPN server with data epoch keys support. A remote user can send crafted encrypted packets to cause a denial of service.
The issue occurs when connecting to an OpenVPN 2.7.0 server or another implementation that supports data epoch keys.