NULL pointer dereference in OpenSSL - CVE-2025-15468

 

NULL pointer dereference in OpenSSL - CVE-2025-15468

Published: January 27, 2026


Vulnerability identifier: #VU122077
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-15468
CWE-ID: CWE-476
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a NULL pointer dereference error within the SSL_CIPHER_find() function. A remote attacker can pass specially crafted data to the application and perform a denial of service (DoS) attack.


Affected software

OpenSSL
Debian Linux
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Real Time 15
SUSE Linux Enterprise Desktop 15
SUSE Linux Micro
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
FreeBSD
Ubuntu
SUSE Linux Enterprise Live Patching
Basesystem Module
Web and Scripting Module
openSUSE Leap
Fedora
SecurityCenter
Netezza Appliance
NativeEdge Orchestrator
IBM Cloud Pak System
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data
IBM Sterling Partner Engagement Manager
IBM MQ
AppDynamics NodeJS Agent
LANTIME Operating System Firmware (LTOS)
openssl-3-livepatches-debuginfo
openssl-3-livepatches
openssl-3-livepatches-debugsource
openssl (Ubuntu package)
openssl (Debian package)
libopenssl-fips-provider
libopenssl-devel
openssl
libopenssl3-debuginfo
openssl-3
libopenssl-3-devel
libopenssl-3-fips-provider-debuginfo
openssl-3-debuginfo
libopenssl-3-fips-provider
libopenssl3
openssl-3-debugsource
libopenssl3-32bit-debuginfo
libopenssl-3-fips-provider-32bit
libopenssl3-32bit
libopenssl-3-fips-provider-32bit-debuginfo
openssl (Red Hat package)
nodejs24-docs
nodejs24-debuginfo
npm24
nodejs24-devel
nodejs24
nodejs24-debugsource

How to mitigate CVE-2025-15468

Install updates from vendor's website.

OpenSSL - addressed in versions 3.3.6, 3.4.4, 3.5.5, 3.6.1
SecurityCenter - addressed in versions SC202607.1, SC202607.2
Netezza Appliance - update to 1.0.1.0 fp278500
IBM Cloud Pak System - update to 2.3.5.1
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data - update to 5.3.1 Patch 5
IBM Sterling Partner Engagement Manager - addressed in versions 6.2.3.6, 6.2.4.4
LANTIME Operating System Firmware (LTOS) - update to 7.10.008
IBM MQ - addressed in versions 9.1.0.34, 9.2.0.41, 9.3.0.37, 9.4.0.20
AppDynamics NodeJS Agent - update to 25.12.1
openssl-3-livepatches-debuginfo - addressed in versions 0.4-150600.13.11.1, 0.4-150700.16.6.1
openssl-3-livepatches - addressed in versions 0.4-150600.13.11.1, 0.4-150700.16.6.1
openssl-3-livepatches-debugsource - addressed in versions 0.4-150600.13.11.1, 0.4-150700.16.6.1
openssl (Ubuntu package) - addressed in versions 1.0.1f-1ubuntu2.27+esm12, 1.0.2g-1ubuntu4.20+esm14, 1.0.2n-1ubuntu5.13+esm3, 1.1.1f-1ubuntu2.24+esm2, 1.1.1-1ubuntu2.1~18.04.23+esm7, 3.0.2-0ubuntu1.21, 3.0.13-0ubuntu3.7, 3.5.3-1ubuntu3
openssl (Debian package) - addressed in versions 3.0.18-1~deb12u2, 3.5.4-1~deb13u2
libopenssl-fips-provider - update to 3.5.0-150700.3.4.1
libopenssl-devel - update to 3.5.0-150700.3.4.1
openssl - update to 3.5.0-150700.3.4.1
libopenssl3-debuginfo - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
openssl-3 - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
libopenssl-3-devel - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
libopenssl-3-fips-provider-debuginfo - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
openssl-3-debuginfo - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
libopenssl-3-fips-provider - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
libopenssl3 - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
openssl-3-debugsource - addressed in versions 3.5.0-150700.5.45.2, 3.5.0-160000.5.1
libopenssl3-32bit-debuginfo - update to 3.5.0-150700.5.45.2
libopenssl-3-fips-provider-32bit - update to 3.5.0-150700.5.45.2
libopenssl3-32bit - update to 3.5.0-150700.5.45.2
libopenssl-3-fips-provider-32bit-debuginfo - update to 3.5.0-150700.5.45.2
openssl (Red Hat package) - addressed in versions 3.5.1-7.el9_7, 3.5.1-7.el10_1
openssl - update to 3.5.4-2.fc43
NativeEdge Orchestrator - update to 4.2.0.0
nodejs24-docs - update to 24.18.1-150700.15.18.1
nodejs24-debuginfo - update to 24.18.1-150700.15.18.1
npm24 - update to 24.18.1-150700.15.18.1
nodejs24-devel - update to 24.18.1-150700.15.18.1
nodejs24 - update to 24.18.1-150700.15.18.1
nodejs24-debugsource - update to 24.18.1-150700.15.18.1

External References

Related Security Bulletins