Red Hat Product Errata RHSA-2026:25237 - Security Advisory Issued: 2026-06-11 Updated: 2026-06-11 RHSA-2026:25237 - Security Advisory Overview Updated Packages Synopsis Important: openssl security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for openssl is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library. Security Fix(es): openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing (CVE-2026-7383) openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption (CVE-2026-9076) openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure. (CVE-2026-34180) openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys (CVE-2026-34181) openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages (CVE-2026-34182) openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler (CVE-2026-34183) openssl: NULL pointer dereference in QUIC server initial packet handling (CVE-2026-42764) openssl: Possible NULL Dereference in Password-Based CMS Decryption (CVE-2026-42766) openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption (CVE-2026-42767) openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() (CVE-2026-42768) openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate (CVE-2026-42769) openssl: FFC-DH Peer Validation Uses Attacker-Supplied q (CVE-2026-42770) openssl: AES-OCB IV Ignored on EVP_Cipher() Path (CVE-2026-45445) openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes (CVE-2026-45446) openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() (CVE-2026-45447) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 10 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.2 x86_64 Red Hat Enterprise Linux for IBM z Systems 10 s390x Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.2 s390x Red Hat Enterprise Linux for Power, little endian 10 ppc64le Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.2 ppc64le Red Hat Enterprise Linux for ARM 64 10 aarch64 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.2 aarch64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.2 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.2 s390x Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.2 ppc64le Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.2 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 10.2 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 10.2 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 10.2 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 10.2 s390x Fixes BZ - 2481879 - CVE-2026-7383 openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing BZ - 2481880 - CVE-2026-9076 openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption BZ - 2481881 - CVE-2026-34180 openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure. BZ - 2481882 - CVE-2026-34181 openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys BZ - 2481884 - CVE-2026-34182 openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages BZ - 2481885 - CVE-2026-34183 openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler BZ - 2481887 - CVE-2026-42764 openssl: NULL pointer dereference in QUIC server initial packet handling BZ - 2481890 - CVE-2026-42766 openssl: Possible NULL Dereference in Password-Based CMS Decryption BZ - 2481891 - CVE-2026-42767 openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption BZ - 2481892 - CVE-2026-42768 openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() BZ - 2481893 - CVE-2026-42769 openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate BZ - 2481894 - CVE-2026-42770 openssl: FFC-DH Peer Validation Uses Attacker-Supplied q BZ - 2481896 - CVE-2026-45445 openssl: AES-OCB IV Ignored on EVP_Cipher() Path BZ - 2481897 - CVE-2026-45446 openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes BZ - 2481898 - CVE-2026-45447 openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() CVEs CVE-2026-7383 CVE-2026-9076 CVE-2026-34180 CVE-2026-34181 CVE-2026-34182 CVE-2026-34183 CVE-2026-42764 CVE-2026-42766 CVE-2026-42767 CVE-2026-42768 CVE-2026-42769 CVE-2026-42770 CVE-2026-45445 CVE-2026-45446 CVE-2026-45447 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 10 SRPM openssl-3.5.5-4.el10_2.src.rpm SHA-256: 264ab57735a4340a4e5a048394959ce71ac19eabe0a32fd2f62d1d16aa5468a0 x86_64 openssl-3.5.5-4.el10_2.x86_64.rpm SHA-256: 657e695031897bee1f613edf4df55567a660e5fa583a732d064d241af6f1ebe0 openssl-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: 86a65671c117d196b471842037405bca9cd2fc979c39eb47e969dbb2f6bdb1d2 openssl-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: 86a65671c117d196b471842037405bca9cd2fc979c39eb47e969dbb2f6bdb1d2 openssl-debugsource-3.5.5-4.el10_2.x86_64.rpm SHA-256: 3c27b801e00167c6d32c98644d6430d08d5f77acc8247681644c5d35b42a5672 openssl-debugsource-3.5.5-4.el10_2.x86_64.rpm SHA-256: 3c27b801e00167c6d32c98644d6430d08d5f77acc8247681644c5d35b42a5672 openssl-devel-3.5.5-4.el10_2.x86_64.rpm SHA-256: fc196a4a2f690b0132754ec06d8b5b20f604d9966a622e738153c1dbfa3a43da openssl-libs-3.5.5-4.el10_2.x86_64.rpm SHA-256: ddb70c0189e80a5accff9cf326a1d9d31e8a92b0ec6b53e0d6ba0feb5587e5d8 openssl-libs-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: c0b5715c960532cc2d3ee86be669b22f3cd68a7509b4acef51bca3330304061b openssl-libs-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: c0b5715c960532cc2d3ee86be669b22f3cd68a7509b4acef51bca3330304061b openssl-perl-3.5.5-4.el10_2.x86_64.rpm SHA-256: 2b3a79a7d3b867e877dc932728904d292afd4b55d833a387e53341f223703959 Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.2 SRPM openssl-3.5.5-4.el10_2.src.rpm SHA-256: 264ab57735a4340a4e5a048394959ce71ac19eabe0a32fd2f62d1d16aa5468a0 x86_64 openssl-3.5.5-4.el10_2.x86_64.rpm SHA-256: 657e695031897bee1f613edf4df55567a660e5fa583a732d064d241af6f1ebe0 openssl-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: 86a65671c117d196b471842037405bca9cd2fc979c39eb47e969dbb2f6bdb1d2 openssl-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: 86a65671c117d196b471842037405bca9cd2fc979c39eb47e969dbb2f6bdb1d2 openssl-debugsource-3.5.5-4.el10_2.x86_64.rpm SHA-256: 3c27b801e00167c6d32c98644d6430d08d5f77acc8247681644c5d35b42a5672 openssl-debugsource-3.5.5-4.el10_2.x86_64.rpm SHA-256: 3c27b801e00167c6d32c98644d6430d08d5f77acc8247681644c5d35b42a5672 openssl-devel-3.5.5-4.el10_2.x86_64.rpm SHA-256: fc196a4a2f690b0132754ec06d8b5b20f604d9966a622e738153c1dbfa3a43da openssl-libs-3.5.5-4.el10_2.x86_64.rpm SHA-256: ddb70c0189e80a5accff9cf326a1d9d31e8a92b0ec6b53e0d6ba0feb5587e5d8 openssl-libs-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: c0b5715c960532cc2d3ee86be669b22f3cd68a7509b4acef51bca3330304061b openssl-libs-debuginfo-3.5.5-4.el10_2.x86_64.rpm SHA-256: c0b5715c960532cc2d3ee86be669b22f3cd68a7509b4acef51bca3330304061b openssl-perl-3.5.5-4.el10_2.x86_64.rpm SHA-256: 2b3a79a7d3b867e877dc932728904d292afd4b55d833a387e53341f223703959 Red Hat Enterprise Linux for IBM z Systems 10 SRPM openssl-3.5.5-4.el10_2.src.rpm SHA-256: 264ab57735a4340a4e5a048394959ce71ac19eabe0a32fd2f62d1d16aa5468a0 s390x openssl-3.5.5-4.el10_2.s390x.rpm SHA-256: 76280eca2096768ef3e5fdba74ce816f56f347ff588846239430d8a799361f6e openssl-debuginfo-3.5.5-4.el10_2.s390x.rpm SHA-256: fb819dc4091691b5c115d801759ab3f710dff81f785b0e075e2a0505e004c713 openssl-debuginfo-3.5.5-4.el10_2.s390x.rpm SHA-256: fb819dc4091691b5c115d801759ab3f710dff81f785b0e075e2a0505e004c713 openssl-debugsource-3.5.5-4.el10_2.s390x.rpm SHA-256: d86c8b756a2dfda2f0d2ac1a6656e25c00f109cc86dc08564dc825bd4227496b openssl-debugsource-3.5.5-4.el10_2.s390x.rpm SHA-256: d86c8b756a2dfda2f0d2ac1a6656e25c00f109cc86dc08564dc825bd4227496b openssl-devel-3.5.5-4.el10_2.s390x.rpm SHA-256: 4a085ce51b9c79bc0aeb8c253809ef4b5d5003434338e44ee6cb1798b889254b openssl-libs-3.5.5-4.el10_2.s390x.rpm SHA-256: 18a8ea4d0dabec6cce0a4003d9ad573e12d083b446a3a5630c0528d714efffdb openssl-libs-debuginfo-3.5.5-4.el10_2.s390x.rpm SHA-256: 510d5ccb5f273c6ea574359600d821bceea9317a2549498b7d14fc08880fb698 openssl-libs-debuginfo-3.5.5-4.el10_2.s390x.rpm SHA-256: 510d5ccb5f273c6ea574359600d821bceea9317a2549498b7d14fc08880fb698 openssl-perl-3.5.5-4.el10_2.s390x.rpm SHA-256: 26bd5218fe13ad801a74c13f63fee1f77278f5f2cae837cfb2a7b79029e24085 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.2 SRPM openssl-3.5.5-4.el10_2.src.rpm SHA-256: 264ab57735a4340a4e5a048394959ce71ac19eabe0a32fd2f62d1d16aa5468a0 s390x openssl-
This Red Hat security advisory addresses multiple vulnerabilities in OpenSSL for RHEL 10, including high-severity heap buffer overflows and denial-of-service flaws (e.g., CVE-2026-7383, CVSS 8.1). The update resolves issues in CMS, PKCS#12, QUIC, and cryptographic protocol handling that could lead to RCE, DoS, or information disclosure. Affected users should apply the OpenSSL update via the referenced Red Hat channels.