Release date:
2026-10-02 09:18:25 UTC
Description:
- CVE-2026-84782: reset s->init_off to 0 in dtls1_retransmit_message() so a
DTLS retransmission is read from the start of the queued message instead of
the offset left by a write suspended on WANT_WRITE, and skip retransmission
in dtls1_handle_timeout() while such a write is still parked
- CVE-2026-35189: defer building the full name of a nameRelativeToCRLIssuer
CRL distribution point out of setup_dp() and into crl_crldp_check(), so a
certificate with many relative distribution points no longer caches one
copy of the issuer name per entry
Updated packages:
-
openssl-1.0.2k-24.amzn2.0.22.tuxcare.els2.aarch64.rpm
sha:d3060c0f481516fe45e2db5b8844069e3acec1d94e9c5008c51a4c7524a021ac
-
openssl-1.0.2k-24.amzn2.0.22.tuxcare.els2.i686.rpm
sha:ad73f1a269ec6a3322c61f7ede3b2fde9e625e9bd5eb62fd07788b53ca3ae201
-
openssl-1.0.2k-24.amzn2.0.22.tuxcare.els2.x86_64.rpm
sha:d360048221755cc6c02d1e588c0a92a1e19dfd1f7ce86f75e43fa99d6c9dfbb9
-
openssl-devel-1.0.2k-24.amzn2.0.22.tuxcare.els2.aarch64.rpm
sha:f671440c0ab887c2781aeebcc5056d975b30f39d9ec66ca5d2a97b9dee6582ae
-
openssl-devel-1.0.2k-24.amzn2.0.22.tuxcare.els2.i686.rpm
sha:88687063a068e96df55bcce32c5b437026365533f0ab15f7442480f112f8643f
-
openssl-devel-1.0.2k-24.amzn2.0.22.tuxcare.els2.x86_64.rpm
sha:fdd8365c3462a351a9fcb809217a4da1e115c8bd967b9160823b01b1953e685b
-
openssl-libs-1.0.2k-24.amzn2.0.22.tuxcare.els2.aarch64.rpm
sha:174c39d2911e7ef753cb1053dd2e8a0dbab1eceb2d71925507e302670c41c86b
-
openssl-libs-1.0.2k-24.amzn2.0.22.tuxcare.els2.i686.rpm
sha:f521be52df30bbd2d620743b6674e21b5c80a8e29c73ea9bf93e7fbd836f2288
-
openssl-libs-1.0.2k-24.amzn2.0.22.tuxcare.els2.x86_64.rpm
sha:376376a6c98c3ba1090a66c889a8ccf59128445e65e46ec12615c94498ba02c9
-
openssl-perl-1.0.2k-24.amzn2.0.22.tuxcare.els2.aarch64.rpm
sha:162af0d2f28af0246104b15d6a5c230fe558bd4c4260cba1bbfac949f26c3a8e
-
openssl-perl-1.0.2k-24.amzn2.0.22.tuxcare.els2.i686.rpm
sha:1791f621ecbaa35baa36f984f35396dc7dae7a7bac75789e629edfe870f0ef17
-
openssl-perl-1.0.2k-24.amzn2.0.22.tuxcare.els2.x86_64.rpm
sha:5887bcf8a0682597cb31af3e0a2d48cb4537b421b005cfe5aa28eef85a4b4e9b
-
openssl-static-1.0.2k-24.amzn2.0.22.tuxcare.els2.aarch64.rpm
sha:88dc788e167225a93da5b3eae368ad17b73857a630a63b9f601b2e9bcb4382a9
-
openssl-static-1.0.2k-24.amzn2.0.22.tuxcare.els2.i686.rpm
sha:4ddd28a64dbb9b4d3f37957415fbda0d34bd5aeb99c1b7a76633612dadf1fe4f
-
openssl-static-1.0.2k-24.amzn2.0.22.tuxcare.els2.x86_64.rpm
sha:e089a12484e1b419707c8d51b23e2c0254835e97afc4dce51c531b267024abda
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.