CyberRota Analysis
AI-GeneratedThe tap-windows6 driver in OpenVPN versions 2.5.0 to 2.7.6 on Windows is vulnerable to an out-of-bounds write triggered by specially crafted DOMAIN-SEARCH entries. While the CVSS score is low, this vulnerability could potentially be exploited to cause instability or unauthorized access to system memory. Organizations using these versions of OpenVPN should prioritize patching to mitigate any risks associated with this vulnerability.
CVE
CVE-2026-81738
Severity
LOW
CVSS
2.3
EPSS
0.33%
Windows
Original NVD Description
OpenVPN 2.5.0 through 2.7.6 on Windows using the tap-windows6 driver allows attackers to trigger an out-of-bounds write via crafted DOMAIN-SEARCH entries