Known vulnerabilities in openssl (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:openssl_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 79
Public exploits: 6
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openssl (Debian package) openssl (Debian package) is affected by 79 known vulnerabilities: 6 high, 46 medium, 27 low Critical High Medium Low

Vulnerabilities (79)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU145416 - Double Free
CVE-2026-18798
CWE-415 Medium
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 4 more
#VU145417 - Out-of-bounds write
CVE-2026-63072
CWE-787 Medium
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 31 more
#VU145418 - NULL Pointer Dereference
CVE-2026-63076
CWE-476 Medium
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 15 more
#VU145419 - NULL Pointer Dereference
CVE-2026-14457
CWE-476 Medium
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 6 more
#VU145420 - Asymmetric Resource Consumption (Amplification)
CVE-2026-54874
CWE-405 Medium
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 22 more
#VU145421 - Use of Externally-Controlled Format String
CVE-2026-63073
CWE-134 Medium
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 4 more
#VU145422 - Allocation of Resources Without Limits or Throttling
CVE-2026-63074
CWE-770 Low
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 10 more
#VU145423 - Allocation of Resources Without Limits or Throttling
CVE-2026-63075
CWE-770 Low
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082636
and 4 more
#VU145424 - Improper Validation of Integrity Check Value
CVE-2026-75803
CWE-354 Low
No
No
3.5.7-1~deb13u2 26.08.2026 SB2026082627
SB2026082629
SB2026082670
and 9 more
#VU143573 - Allocation of Resources Without Limits or Throttling
CVE-2026-14456
CWE-770 Medium
No
No
3.5.7-1~deb13u2 16.08.2026 SB20260816509
SB2026082629
SB2026082670
and 3 more
#VU134271 - Improper input validation
CVE-2026-34182
CWE-20 High
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 25 more
#VU134272 - Allocation of Resources Without Limits or Throttling
CVE-2026-34183
CWE-770 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 14 more
#VU134274 - NULL Pointer Dereference
CVE-2026-42764
CWE-476 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 14 more
#VU134276 - Heap-based Buffer Overflow
CVE-2026-7383
CWE-122 Low
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 35 more
#VU134277 - Out-of-bounds read
CVE-2026-9076
CWE-125 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 36 more
#VU134278 - Out-of-bounds read
CVE-2026-34180
CWE-125 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 36 more
#VU134279 - Improper input validation
CVE-2026-34181
CWE-20 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 14 more
#VU134281 - NULL Pointer Dereference
CVE-2026-42766
CWE-476 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 37 more
#VU134283 - Observable discrepancy
CVE-2026-42768
CWE-203 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 18 more
#VU134284 - Improper Certificate Validation
CVE-2026-42769
CWE-295 Low
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 13 more


Showing elements 1 - 20 out of 79