It was discovered that openvpn, a virtual private network application, does not properly handle HMAC verification checks. A remote attacker can take advantage of this flaw to bypass source IP address validation.
https://security-tracker.debian.org/tracker/DSA-6069-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-6069-1
Continue reading...

