shield Security update for openssl-3
SUSE-SLE-Micro-5.4-2026-1429


This update for openssl-3 fixes the following issue: - CVE-2026-28390: NULL pointer dereference during processing of a crafted CMS EnvelopedData message with KeyTransportRecipientInfo (bsc#1261678).

  • Release Date
    Apr 17 2026
  • References
    Bugzilla: 1261678
    CVEs: CVE-2026-28390
  • Type
    security
  • Severity
    moderate

cloud_download Downloads

SUSE Linux Enterprise Micro 5.4 s390x
  • Packages
    libopenssl3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.84.1 lock rpm
    openssl-3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.84.1 lock src
SUSE Linux Enterprise Micro 5.4 aarch64
  • Packages
    libopenssl3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.84.1 lock rpm
    openssl-3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.84.1 lock src
SUSE Linux Enterprise Micro 5.4 x86_64
  • Packages
    libopenssl3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.84.1 lock rpm
    openssl-3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.84.1 lock src