ELSA-2026-22313

ELSA-2026-22313 - compat-openssl11 security update

Type:SECURITY
Impact:MODERATE
Release Date:2026-06-23

Description


[1:1.1.1k-5.3]
- Fixes CVE-2026-28390: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing
Resolves: RHEL-165863


Related CVEs


CVE-2026-28390

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) compat-openssl11-1.1.1k-5.el9_8.3.src.rpm2c968ce6391ea858226e913956ff53d1cfe6f1c2e4f298bbc0aac6496a161228-ol9_aarch64_appstream
compat-openssl11-1.1.1k-5.el9_8.3.aarch64.rpma128274d253f9ad507fe5b95aca46484a400f2069f49394a4b0aaad7a034309e-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) compat-openssl11-1.1.1k-5.el9_8.3.src.rpm2c968ce6391ea858226e913956ff53d1cfe6f1c2e4f298bbc0aac6496a161228-ol9_x86_64_appstream
compat-openssl11-1.1.1k-5.el9_8.3.i686.rpm9d75c0f26b5b129540538f14abed11f968d394bd57f85ce420b58e7ad22d2c46-ol9_x86_64_appstream
compat-openssl11-1.1.1k-5.el9_8.3.x86_64.rpm7ca693b1f053b452b3622feb51e1b391a25be337f1a6c7c4ed81b0cfb7f683ca-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete