[CLSA-2026:1777948139] openssl: Fix of CVE-2026-31790
Type:
security
Severity:
Important
Release date:
2026-05-05 02:29:03 UTC
Description:
- CVE-2026-31790: fix RSA KEM RSASVE encapsulation memory leak by validating RSA_public_encrypt() return value and cleansing secret on failure
Updated packages:
  • openssl-3.2.2-6.el9_6.1.tuxcare.6.els9.x86_64.rpm
    sha:4e3e41e267a8e0634e1ccfa0c0cece32ad6b804d6cdceef84945d8a8d15f3afa
  • openssl-devel-3.2.2-6.el9_6.1.tuxcare.6.els9.i686.rpm
    sha:f2f9d9e9d777bb9373ffbf3a5403b2bcc831bdcf963d69f110bde65074752468
  • openssl-devel-3.2.2-6.el9_6.1.tuxcare.6.els9.x86_64.rpm
    sha:d16010735fe20aa69363b6ed44ff7cf52f03ddca87f56e2be00b84958aa94321
  • openssl-libs-3.2.2-6.el9_6.1.tuxcare.6.els9.i686.rpm
    sha:86d0d661aec4fc7459c5b820a24a74d1372629cdb206c424fbbbc848fdb5c56d
  • openssl-libs-3.2.2-6.el9_6.1.tuxcare.6.els9.x86_64.rpm
    sha:8ad1fe07e00cdbeb91c660df2b6f050ce0da393b61d05cdc27e374c2104dcaa8
  • openssl-perl-3.2.2-6.el9_6.1.tuxcare.6.els9.x86_64.rpm
    sha:2c4362efba8aff9e16dc5c48c468b0ed9d272f5ea9676895041af8ade4045bc9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.