[CLSA-2026:1789605650] openssl11: Fix of CVE-2026-54874
Type:
security
Severity:
Important
Release date:
2026-09-17 00:41:01 UTC
Description:
- CVE-2026-54874: copy only a DTLS record's own on-wire bytes when buffering it for a future epoch, instead of taking ownership of the whole ~16KB read buffer and allocating a fresh one
CVEs fixed:
Updated packages:
  • openssl11-1.1.1k-7.el7.tuxcare.els5.x86_64.rpm
    sha:6c089a1a16c609419d8b455acdd53b4b5f574b748abef412f576c850a9abc09e
  • openssl11-devel-1.1.1k-7.el7.tuxcare.els5.x86_64.rpm
    sha:c2f97be8df829e34922a56e925f7ebcc0970337a44ca1906cd798d37ffadbd1c
  • openssl11-libs-1.1.1k-7.el7.tuxcare.els5.x86_64.rpm
    sha:1250d2863e7c5baea6db599dcf1ffce449bc1cac899e61224b5f442a6afe85d8
  • openssl11-static-1.1.1k-7.el7.tuxcare.els5.x86_64.rpm
    sha:174180140c94612bad9393ed0b842084f12fcab739a9adc0850319ac47a4ff4b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.