Overview
What is CVE-2026-84732?
Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflow
Vulnerability intelligence
CVE-2026-84732 and is rated High severity with a CVSS score of 8.7. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
Retransmissions of ACK packet ID in OpenVPN through 2.6.22 and 2.7.6 allow remote unauthenticated attackers to cause a denial of service via crafted inputs that trigger a timeout integer overflow