Known vulnerabilities in openssl (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:openssl_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 69
Public exploits: 6
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openssl (Debian package) openssl (Debian package) is affected by 69 known vulnerabilities: 6 high, 39 medium, 24 low Critical High Medium Low

Vulnerabilities (69)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU134270 - Use After Free
CVE-2026-45447
CWE-416 High
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 42 more
#VU134271 - Improper input validation
CVE-2026-34182
CWE-20 High
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 18 more
#VU134272 - Allocation of Resources Without Limits or Throttling
CVE-2026-34183
CWE-770 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 9 more
#VU134274 - NULL Pointer Dereference
CVE-2026-42764
CWE-476 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 8 more
#VU134275 - Improper Initialization
CVE-2026-45445
CWE-665 Low
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 17 more
#VU134276 - Heap-based Buffer Overflow
CVE-2026-7383
CWE-122 Low
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 31 more
#VU134277 - Out-of-bounds read
CVE-2026-9076
CWE-125 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 32 more
#VU134278 - Out-of-bounds read
CVE-2026-34180
CWE-125 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 32 more
#VU134279 - Improper input validation
CVE-2026-34181
CWE-20 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 9 more
#VU134281 - NULL Pointer Dereference
CVE-2026-42766
CWE-476 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 33 more
#VU134282 - NULL Pointer Dereference
CVE-2026-42767
CWE-476 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610122
and 20 more
#VU134283 - Observable discrepancy
CVE-2026-42768
CWE-203 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 14 more
#VU134284 - Improper Certificate Validation
CVE-2026-42769
CWE-295 Low
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 9 more
#VU134285 - Improper input validation
CVE-2026-42770
CWE-20 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 17 more
#VU134287 - Improper Verification of Cryptographic Signature
CVE-2026-45446
CWE-347 Medium
No
No
3.0.20-1~deb12u2, 3.5.6-1~deb13u2 10.06.2026 SB20260610118
SB20260610119
SB20260610123
and 15 more
#VU125564 - Use After Free
CVE-2026-28387
CWE-416 High
No
No
3.0.19-1~deb12u2, 3.5.5-1~deb13u2 09.04.2026 SB2026040943
SB2026040944
SB2026040945
and 29 more
#VU125565 - NULL Pointer Dereference
CVE-2026-28388
CWE-476 Low
No
No
3.0.19-1~deb12u2, 3.5.5-1~deb13u2 09.04.2026 SB2026040943
SB2026040944
SB2026040945
and 37 more
#VU125566 - NULL Pointer Dereference
CVE-2026-28389
CWE-476 Medium
No
No
3.0.19-1~deb12u2, 3.5.5-1~deb13u2 09.04.2026 SB2026040943
SB2026040944
SB2026040945
and 30 more
#VU125568 - Heap-based Buffer Overflow
CVE-2026-31789
CWE-122 Medium
No
No
3.0.19-1~deb12u2, 3.5.5-1~deb13u2 09.04.2026 SB2026040943
SB2026040944
SB2026040945
and 21 more
#VU125561 - Always-Incorrect Control Flow Implementation
CVE-2026-2673
CWE-670 Low
No
No
3.0.19-1~deb12u2, 3.5.5-1~deb13u2 09.04.2026 SB2026040943
SB2026040944
SB20260409112
and 4 more


Showing elements 1 - 20 out of 69