Issue summary: An invalid or NULL pointer dereference can happen in an application processing a malformed PKCS#12 file.
Impact summary: An application processing a malformed PKCS#12 file can be caused to dereference an invalid or NULL pointer on memory read, resulting in a Denial of Service.
A type confusion vulnerability exists in PKCS#12 parsing code where an ASN1_TYPE union member is accessed without first validating the type, causing an invalid pointer read.
The location is constrained to a 1-byte address space, meaning any attempted pointer manipulation can only target addresses between 0x00 and 0xFF. This range corresponds to the zero page, which is unmapped on most modern operating systems and will reliably result in a crash, leading only to a Denial of Service. Exploiting this issue also requires a user or application to process a maliciously crafted PKCS#12 file. It is uncommon to accept untrusted PKCS#12 files in applications as they are usually used to store private keys which are trusted by definition. For these reasons, the issue was assessed as Low severity.
The FIPS modules in 3.5, 3.4, 3.3 and 3.0 are not affected by this issue, as the PKCS12 implementation is outside the OpenSSL FIPS module boundary.
OpenSSL 3.6, 3.5, 3.4, 3.3, 3.0 and 1.1.1 are vulnerable to this issue.
OpenSSL 1.0.2 is not affected by this issue.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade openssl-develUpgrade opensslUpgrade openssl-libsUpgrade openssl-perl | Feb 3, 2026 | Jan 28, 2026 |
| Alpine Linux | — | Upgrade openssl | Jan 28, 2026 | Jan 27, 2026 |
| Amazon Linux Ami 2 | — | Upgrade edk2-toolsUpgrade edk2-ovmfUpgrade edk2-tools-docUpgrade openssl11-libsUpgrade edk2-aarch64Upgrade openssl11-develUpgrade openssl11-staticUpgrade openssl11-debuginfoUpgrade openssl11Upgrade edk2-debuginfo | May 20, 2026 | May 20, 2026 |
| Amazon_linux_2023 | — | Upgrade openssl-develUpgrade openssl-perlUpgrade openssl-libs-debuginfoUpgrade openssl-libsUpgrade openssl-fips-provider-latest-debuginfoUpgrade openssl-snapsafe-libsUpgrade openssl-fips-provider-latestUpgrade openssl-snapsafe-libs-debuginfoUpgrade openssl-debuginfoUpgrade opensslUpgrade openssl-debugsource | Feb 20, 2026 | Jan 27, 2026 |
| Debian | — | Upgrade openssl | Jan 29, 2026 | Jan 29, 2026 |
| Dell Idrac | — | Upgrade Dell iDRAC to the latest version | Apr 29, 2026 | Apr 28, 2026 |
| Freebsd | — | Upgrade FreeBSDUpgrade openssl34Upgrade openssl33Upgrade openssl36Upgrade opensslUpgrade openssl35 | Jan 30, 2026 | Jan 27, 2026 |
| Http Openssl | — | Upgrade to the latest version of OpenSSL | Mar 5, 2026 | Jan 27, 2026 |
| Ibm Aix | — | Apply the fix or workaround for openssl_advisory46 | Mar 10, 2026 | Mar 9, 2026 |
| Oracle_linux | — | Upgrade openssl-libsUpgrade openssl-develUpgrade openssl-perlUpgrade openssl | Jan 30, 2026 | Jan 27, 2026 |
| Redhat_linux | — | No solution existsUpgrade openssl-perlUpgrade openssl-libsUpgrade openssl-libs-debuginfoUpgrade openssl-debugsourceUpgrade openssl-develUpgrade opensslUpgrade openssl-debuginfo | Jan 29, 2026 | Jan 27, 2026 |
| Rocky_linux | — | Upgrade opensslUpgrade openssl-libs-debuginfoUpgrade openssl-debuginfoUpgrade openssl-perlUpgrade openssl-libsUpgrade openssl-debugsourceUpgrade openssl-devel | Feb 2, 2026 | Jan 30, 2026 |
| Splunk | — | Upgrade Splunk Enterprise to version 9.4.9Upgrade Splunk Enterprise to version 10.0.4Upgrade Splunk Universal Forwarder to version 10.0.4Upgrade Splunk Enterprise to version 10.2.1Upgrade Splunk Enterprise to version 9.3.10Upgrade Splunk Universal Forwarder to version 10.2.1 | Jul 30, 2026 | Jan 27, 2026 |
| Suse | — | Upgrade libopenssl-1_1-develUpgrade openssl-1_1Upgrade libopenssl-3-fips-provider-x86-64-v3Upgrade libopenssl-3-fips-providerUpgrade libopenssl-3-develUpgrade openssl-3Upgrade openssl-3-docUpgrade libopenssl3-x86-64-v3Upgrade libopenssl3-32bitUpgrade libopenssl-3-devel-32bitUpgrade libopenssl1_1Upgrade libopenssl3Upgrade libopenssl-3-fips-provider-32bitUpgrade openssl-1_1-docUpgrade libopenssl1_1-hmacUpgrade libopenssl-1_1-devel-32bitUpgrade libopenssl1_1-hmac-32bitUpgrade libopenssl1_1-32bit | Jan 29, 2026 | Jan 28, 2026 |
| Ubuntu | — | Upgrade libssl1.0.0 (Ubuntu Pro)Upgrade libssl3t64Upgrade opensslUpgrade libssl3Upgrade openssl1.0 (Ubuntu Pro)Upgrade openssl (Ubuntu Pro)Upgrade libssl1.1 (Ubuntu Pro) | Jan 28, 2026 | Jan 27, 2026 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | May 27, 2026 | Jan 27, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub