RHSA-2026:44480: Moderate: compat-openssl10 security update

Published Jul 23, 2026
·
Updated

Moderate: compat-openssl10 security update

Other sources

The OpenSSL toolkit provides support for secure communications between machines. This version of OpenSSL package contains only the libraries and is provided for compatibility with previous releases and software that does not support compilation with OpenSSL-1.1.Security Fix(es): openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing (CVE-2026-28390) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Red Hat

Affected Software

2 affected components
Red Hat Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life
Red Hat Red Hat Enterprise Linux Server - AUS

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade compat-openssl10 security update (OpenSSL toolkit libraries for compatibility) to a version that resolves this vulnerability.

    Patch CVE-2026-28390

Event History

Jul 23, 2026
Advisory Published
via Red Hat·12:00 AM
Data Sourced
via Red Hat·12:00 AM
RemedyDescriptionAffected Software
Advisory Published
via Red Hat·01:12 PM
Data Sourced
via Red Hat·01:12 PM
Severity

Frequently Asked Questions

1

What is the severity of RHSA-2026:44480?

The severity of RHSA-2026:44480 is classified as medium.

2

How do I fix RHSA-2026:44480?

You can fix RHSA-2026:44480 by updating the compat-openssl10 package in your Red Hat system.

3

What issue does RHSA-2026:44480 address?

RHSA-2026:44480 addresses a null pointer dereference vulnerability in the compat-openssl10 package.

4

On which systems is RHSA-2026:44480 applicable?

RHSA-2026:44480 is applicable to Red Hat Enterprise Linux for x86_64 and Red Hat Enterprise Linux Server.

5

When was RHSA-2026:44480 published?

RHSA-2026:44480 was published on July 23, 2026.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203