logo

CVE-2025-15467: OpenSSL Vulnerability Leads to Denial-of-Service, Remote Code Execution

ID: 5eeb885d-263e-5691-b80c-e8c69480c175

STIX ID: report--5eeb885d-263e-5691-b80c-e8c69480c175

Feed Name: SOC Prime Blog

Threat Score
75/100

Date Published: 2026-01-29

Date Updated: 2026-04-30

Author: Daryna Olyniychuk

...
...

OpenSSL CVE-2025-15467: a stack buffer overflow in CMS AuthEnvelopedData AEAD parsing can trigger DoS and potentially remote code execution; it affects OpenSSL 3.0–3.6 and should be mitigated by applying the vendor patches (e.g., 3.6.1, 3.5.5, 3.4.4, 3.3.6, 3.0.19).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.