Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:1733 - Security Advisory
Issued:
2026-02-02
Updated:
2026-02-02

RHSA-2026:1733 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openssl security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openssl is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.

Security Fix(es):

  • openssl: OpenSSL: Remote code execution or Denial of Service via oversized Initialization Vector in CMS parsing (CVE-2025-15467)
  • openssl: OpenSSL: Arbitrary code execution due to out-of-bounds write in PKCS#12 processing (CVE-2025-69419)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2430376 - CVE-2025-15467 openssl: OpenSSL: Remote code execution or Denial of Service via oversized Initialization Vector in CMS parsing
  • BZ - 2430386 - CVE-2025-69419 openssl: OpenSSL: Arbitrary code execution due to out-of-bounds write in PKCS#12 processing

CVEs

  • CVE-2025-15467
  • CVE-2025-69419

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
openssl-3.0.1-46.el9_0.7.src.rpm SHA-256: 10114542a26372b898637a9d7f1355281923e1acbb5ad72e9c478c3b94b4e98c
ppc64le
openssl-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: 1503850372cd0cde5b5cc19530cfb9b911f507547547df549e689f1c858dbeff
openssl-debuginfo-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: f0937bf55b414903abc2d800143a24f9010dee5a8a7cd84d717f14178d8eee02
openssl-debuginfo-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: f0937bf55b414903abc2d800143a24f9010dee5a8a7cd84d717f14178d8eee02
openssl-debugsource-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: b863e92e6cc8b7004ab2613c5c1e0580de9a165c61bb2cae163f355fa42f2116
openssl-debugsource-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: b863e92e6cc8b7004ab2613c5c1e0580de9a165c61bb2cae163f355fa42f2116
openssl-devel-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: 05ad88fae8c473bd4d6b4da6e7b5d82b32eb395b853081f8a7a7e648f53d0a81
openssl-libs-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: 6d8b742a9c177454c727705b38e78cb486969d68babe0af2bf4acc500d5d5f3a
openssl-libs-debuginfo-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: 059824133f117dd071a9bce7b26809f77bd94505cea5a9bde649307ec998ae08
openssl-libs-debuginfo-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: 059824133f117dd071a9bce7b26809f77bd94505cea5a9bde649307ec998ae08
openssl-perl-3.0.1-46.el9_0.7.ppc64le.rpm SHA-256: a8cfca170260171f751ff489cfe2de91fa0525cd7635e3d866c0e4654c8b1272

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
openssl-3.0.1-46.el9_0.7.src.rpm SHA-256: 10114542a26372b898637a9d7f1355281923e1acbb5ad72e9c478c3b94b4e98c
x86_64
openssl-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: e63f1e545c795b8c44519764dde42a4a52e671501e08341f83e1edf985b13c3f
openssl-debuginfo-3.0.1-46.el9_0.7.i686.rpm SHA-256: ccc5ee3ffeb0100a6bd5df6a55cc3028b5270b2751fedd951aa6b5cfc97a16fd
openssl-debuginfo-3.0.1-46.el9_0.7.i686.rpm SHA-256: ccc5ee3ffeb0100a6bd5df6a55cc3028b5270b2751fedd951aa6b5cfc97a16fd
openssl-debuginfo-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: 6c27fdc73054e9b73fb3ee025a19a4803aaaaa76b93ca609dae5ea5671a44b0c
openssl-debuginfo-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: 6c27fdc73054e9b73fb3ee025a19a4803aaaaa76b93ca609dae5ea5671a44b0c
openssl-debugsource-3.0.1-46.el9_0.7.i686.rpm SHA-256: 4045dda1db074a43935d847ed999a70c83327108208dcabc23dc08f48328c20c
openssl-debugsource-3.0.1-46.el9_0.7.i686.rpm SHA-256: 4045dda1db074a43935d847ed999a70c83327108208dcabc23dc08f48328c20c
openssl-debugsource-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: a2bb0347ce79f33bc59ff9e90be0050f2754bac39510b02f2d9de0bfc741729d
openssl-debugsource-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: a2bb0347ce79f33bc59ff9e90be0050f2754bac39510b02f2d9de0bfc741729d
openssl-devel-3.0.1-46.el9_0.7.i686.rpm SHA-256: 5b683e0e7bbf9ca4e2cf8a0ac9cf19e174abebe0f4bed7ae5d9bfee65be27a06
openssl-devel-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: 25ba48caf0772fd6512a4bdef5d770e78c97fe3234d5d8380eaf09463a4d372b
openssl-libs-3.0.1-46.el9_0.7.i686.rpm SHA-256: d25c65e0ac0ab1d4cb59f0bf09b45d9136a6ce002cbd11276cb6893561bca483
openssl-libs-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: f7cc3ee30da7df39828727978caedc89599bc74644891999d7132959100996a4
openssl-libs-debuginfo-3.0.1-46.el9_0.7.i686.rpm SHA-256: 2f2cad696cae9c064c3e840a18f334d9cf8cb4e6781472dbe401e7252f7c4459
openssl-libs-debuginfo-3.0.1-46.el9_0.7.i686.rpm SHA-256: 2f2cad696cae9c064c3e840a18f334d9cf8cb4e6781472dbe401e7252f7c4459
openssl-libs-debuginfo-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: d9047c896a654bfff1d61c547f99ae0b8ded44cd4c08e7eeaf2138a39422bab0
openssl-libs-debuginfo-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: d9047c896a654bfff1d61c547f99ae0b8ded44cd4c08e7eeaf2138a39422bab0
openssl-perl-3.0.1-46.el9_0.7.x86_64.rpm SHA-256: bd819b1226e3d1568ea80d3bfe23fbffca68fbd87455bb62136c2218f4b25d67

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
openssl-3.0.1-46.el9_0.7.src.rpm SHA-256: 10114542a26372b898637a9d7f1355281923e1acbb5ad72e9c478c3b94b4e98c
aarch64
openssl-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: 47079878036a70289f0772e8105d4867eed73c3553de3deab682cc4c8d56d140
openssl-debuginfo-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: 103a47b43b600c03fea29182ed42c9b414ec92911dae71c8d3cbb4bd7ecfb160
openssl-debuginfo-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: 103a47b43b600c03fea29182ed42c9b414ec92911dae71c8d3cbb4bd7ecfb160
openssl-debugsource-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: 85be1ecfe54ebe65ec1f96cf5d6cbcdc71507c29038ad51235b14098b84d2ea0
openssl-debugsource-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: 85be1ecfe54ebe65ec1f96cf5d6cbcdc71507c29038ad51235b14098b84d2ea0
openssl-devel-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: 9f3cdf3f920c5206997c97de476b636af2250e21b497d6e897f7690f26f8fdce
openssl-libs-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: c87fe84fdc478c1ead40568dbd652c9037726e18a8b7685cdff2fd41c4c287e5
openssl-libs-debuginfo-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: d94094b54e800c078031943651d3deed6b483ac6512bc0de049bc1d0c96564c6
openssl-libs-debuginfo-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: d94094b54e800c078031943651d3deed6b483ac6512bc0de049bc1d0c96564c6
openssl-perl-3.0.1-46.el9_0.7.aarch64.rpm SHA-256: abceecf21d82789c3493205b8bde2a0c9bc73ec60b4f61c1d5d383a922e38d15

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
openssl-3.0.1-46.el9_0.7.src.rpm SHA-256: 10114542a26372b898637a9d7f1355281923e1acbb5ad72e9c478c3b94b4e98c
s390x
openssl-3.0.1-46.el9_0.7.s390x.rpm SHA-256: b15a7d21f4debfe23c7fffd2f1f181f7c3c94ac279da3b9c4bf3a5413c5c7692
openssl-debuginfo-3.0.1-46.el9_0.7.s390x.rpm SHA-256: a494223d537b26c5bf20a59aacacf4a53681860d423d868b41c0d44715f4243f
openssl-debuginfo-3.0.1-46.el9_0.7.s390x.rpm SHA-256: a494223d537b26c5bf20a59aacacf4a53681860d423d868b41c0d44715f4243f
openssl-debugsource-3.0.1-46.el9_0.7.s390x.rpm SHA-256: 195667dea33336b7c85f401ae55609218a85feda1b10575bc5e21e6e19c3c406
openssl-debugsource-3.0.1-46.el9_0.7.s390x.rpm SHA-256: 195667dea33336b7c85f401ae55609218a85feda1b10575bc5e21e6e19c3c406
openssl-devel-3.0.1-46.el9_0.7.s390x.rpm SHA-256: 6a83f3593da0fbee958e9118db7e15e3ea64f2cbe2f37578eb4aed3a1df264d7
openssl-libs-3.0.1-46.el9_0.7.s390x.rpm SHA-256: ffa797fe8b5b69909fb992462d1a2b1bbd0ed2ca5441443ffaf89e5210311600
openssl-libs-debuginfo-3.0.1-46.el9_0.7.s390x.rpm SHA-256: 12934c16134be7ec1f3f664244ad010ae892132295808bd915e1534a69f9802e
openssl-libs-debuginfo-3.0.1-46.el9_0.7.s390x.rpm SHA-256: 12934c16134be7ec1f3f664244ad010ae892132295808bd915e1534a69f9802e
openssl-perl-3.0.1-46.el9_0.7.s390x.rpm SHA-256: 0ce702f9be36d0571a9dce22d78f37cb36c5a1703f6332a7482da6d6d60f167b

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility