logo

OpenSSL issued security updates to fix 12 flaws, including Remote Code Execution

ID: 0ad97759-a141-5a01-888e-bffc8a4575c6

STIX ID: report--0ad97759-a141-5a01-888e-bffc8a4575c6

Feed Name: Security Affairs

Threat Score
70/100

Date Published: 2026-01-29

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

OpenSSL published patches for 12 vulnerabilities—mostly memory-safety and parsing issues—including two high-severity flaws (CVE‑2025‑15467 and CVE‑2025‑11187) that can lead to denial-of-service and potentially remote code execution when parsing untrusted CMS/PKCS#7 and PKCS#12 inputs; affected versions include OpenSSL 3.0–3.6 and users should apply updates promptly.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.