[CLSA-2026:1778072039] openssl: Fix of CVE-2026-31790
Type:
security
Severity:
Moderate
Release date:
2026-05-06 12:54:04 UTC
Description:
- CVE-2026-31790: fix RSA KEM RSASVE encapsulation memory leak by validating RSA_public_encrypt() return value and cleansing secret on failure
Updated packages:
  • openssl-3.0.7-20.el9_2.tuxcare.1.els10.x86_64.rpm
    sha:0692afffa55ac518db4353be9834ad95a3bb086b48a6291f5226389b150c1d19
  • openssl-devel-3.0.7-20.el9_2.tuxcare.1.els10.i686.rpm
    sha:6ef8563aceb592c692303eaa5e48f34f285ab92b873f0067072ce285f1fecaa2
  • openssl-devel-3.0.7-20.el9_2.tuxcare.1.els10.x86_64.rpm
    sha:042544d067eb539c33169163a4affe993e7db4cfc9fa936c540326ba3dab626e
  • openssl-libs-3.0.7-20.el9_2.tuxcare.1.els10.i686.rpm
    sha:4cd8dfd4d3f57edf1a25a7da9d2999ea24cf0c11a3c2a4ad6eb2036c7613acd6
  • openssl-libs-3.0.7-20.el9_2.tuxcare.1.els10.x86_64.rpm
    sha:adc2c99411bb734fc811e45f80f2a16f9ea0be6140933a21d1bea2f4c8021501
  • openssl-perl-3.0.7-20.el9_2.tuxcare.1.els10.x86_64.rpm
    sha:b38472b97025398b298653dc778018714f7d420d1a19ed3a9087500f2e3ea7dc
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.