shield Security update for openssl-1_1
SUSE-SLE-Micro-5.4-2026-1562


This update for openssl-1_1 fixes the following issues: - CVE-2026-28390: NULL pointer dereference during processing of a crafted CMS EnvelopedData message with KeyTransportRecipientInfo (bsc#1261678).

  • Release Date
    Apr 23 2026
  • References
    Bugzilla: 1261678
    CVEs: CVE-2026-28390
  • Type
    security
  • Severity
    moderate

cloud_download Downloads

SUSE Linux Enterprise Micro 5.4 aarch64
  • Packages
    libopenssl-1_1-devel
    Development files for OpenSSL
    1.1.1l-150400.7.93.1 lock rpm
    libopenssl1_1
    Secure Sockets and Transport Layer Security
    1.1.1l-150400.7.93.1 lock rpm
    libopenssl1_1-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1l-150400.7.93.1 lock rpm
    openssl-1_1
    Secure Sockets and Transport Layer Security
    1.1.1l-150400.7.93.1 lock rpm lock src
SUSE Linux Enterprise Micro 5.4 x86_64
  • Packages
    libopenssl-1_1-devel
    Development files for OpenSSL
    1.1.1l-150400.7.93.1 lock rpm
    libopenssl1_1
    Secure Sockets and Transport Layer Security
    1.1.1l-150400.7.93.1 lock rpm
    libopenssl1_1-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1l-150400.7.93.1 lock rpm
    openssl-1_1
    Secure Sockets and Transport Layer Security
    1.1.1l-150400.7.93.1 lock rpm lock src
SUSE Linux Enterprise Micro 5.4 s390x
  • Packages
    libopenssl-1_1-devel
    Development files for OpenSSL
    1.1.1l-150400.7.93.1 lock rpm
    libopenssl1_1
    Secure Sockets and Transport Layer Security
    1.1.1l-150400.7.93.1 lock rpm
    libopenssl1_1-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1l-150400.7.93.1 lock rpm
    openssl-1_1
    Secure Sockets and Transport Layer Security
    1.1.1l-150400.7.93.1 lock rpm lock src