Known vulnerabilities in openssl (Debian package) - page 3

Vendor: Debian
Software CPE: cpe:2.3:o:debian:openssl_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 79
Public exploits: 6
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openssl (Debian package) openssl (Debian package) is affected by 79 known vulnerabilities: 6 high, 46 medium, 27 low Critical High Medium Low

Vulnerabilities (79)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU122078 - Numeric Truncation Error
CVE-2025-15469
CWE-197 Low
No
No
3.0.18-1~deb12u2, 3.5.4-1~deb13u2 27.01.2026 SB2026012785
SB2026012791
SB2026012792
and 15 more
#VU122077 - NULL Pointer Dereference
CVE-2025-15468
CWE-476 Medium
No
No
3.0.18-1~deb12u2, 3.5.4-1~deb13u2 27.01.2026 SB2026012785
SB2026012791
SB2026012792
and 19 more
#VU122076 - Stack-based buffer overflow
CVE-2025-15467
CWE-121 High
Available
No
3.0.18-1~deb12u2, 3.5.4-1~deb13u2 27.01.2026 SB2026012785
SB2026012791
SB2026012792
and 67 more
#VU122075 - Stack-based buffer overflow
CVE-2025-11187
CWE-121 Medium
No
No
3.0.18-1~deb12u2, 3.5.4-1~deb13u2 27.01.2026 SB2026012785
SB2026012791
SB2026012792
and 20 more
#VU116215 - Out-of-bounds read
CVE-2025-9232
CWE-125 Medium
No
No
3.0.17-1~deb12u3, 3.5.1-1+deb13u1 01.10.2025 SB2025100119
SB2025100139
SB2025100153
and 13 more
#VU116214 - Covert Timing Channel
CVE-2025-9231
CWE-385 Low
No
No
3.0.17-1~deb12u3, 3.5.1-1+deb13u1 01.10.2025 SB2025100119
SB2025100139
SB2025100153
and 10 more
#VU116213 - Out-of-bounds write
CVE-2025-9230
CWE-787 Medium
No
No
3.0.17-1~deb12u3, 3.5.1-1+deb13u1 01.10.2025 SB2025100119
SB2025100132
SB2025100133
and 108 more
#VU96744 - Type confusion
CVE-2024-6119
CWE-843 Medium
No
No
3.0.14-1~deb12u2 03.09.2024 SB2024090364
SB2024090365
SB2024090384
and 99 more
#VU82349 - Cryptographic Issues
CVE-2023-5363
CWE-310 Low
No
No
3.0.11-1~deb12u2 24.10.2023 SB2023102443
SB2023102448
SB2023102534
and 46 more
#VU76651 - Resource Management Errors
CVE-2023-2650
CWE-399 Medium
No
No
1.1.1n-0+deb11u5 30.05.2023 SB2023053040
SB2023053044
SB2023053045
and 131 more
#VU74149 - Security Features
CVE-2023-0466
CWE-254 Low
No
No
1.1.1n-0+deb11u5 28.03.2023 SB2023032241
SB2023040666
SB2023040730
and 86 more
#VU74148 - Improper Verification of Cryptographic Signature
CVE-2023-0465
CWE-347 Low
No
No
1.1.1n-0+deb11u5 28.03.2023 SB2023032241
SB2023040666
SB2023040730
and 100 more
#VU73960 - Resource exhaustion
CVE-2023-0464
CWE-400 Medium
No
No
1.1.1n-0+deb11u5 22.03.2023 SB2023032241
SB2023033057
SB2023033058
and 100 more
#VU71996 - Double Free
CVE-2022-4450
CWE-415 Medium
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020748
SB2023020771
and 180 more
#VU71995 - Use After Free
CVE-2023-0215
CWE-416 Medium
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 209 more
#VU71993 - Information Exposure Through Timing Discrepancy
CVE-2022-4304
CWE-208 Medium
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020748
SB2023020767
and 222 more
#VU71992 - Type confusion
CVE-2023-0286
CWE-843 High
No
No
1.1.1n-0+deb11u4 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 223 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
1.1.1n-0+deb11u4 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
1.1.1n-0+deb10u3, 1.1.1n-0+deb11u3 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Available
No
1.1.1n-0+deb10u2, 1.1.1n-0+deb11u2 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more


Showing elements 41 - 60 out of 79