HomeFreeBSD

Fix multiple security issues in OpenSSL.

Description

Fix multiple security issues in OpenSSL.

Out-of-bounds read & write in RFC 3211 KEK Unwrap (CVE-2025-9230)
Out-of-bounds read in HTTP client no_proxy handling (CVE-2025-9232)

Obtained from: OpenSSL
Approved by: so
Security: FreeBSD-SA-25:08.openssl
Security: CVE-2025-9230
Security: CVE-2025-9232

(cherry picked from commit 270158508d7c55a0737c2a9915cd4afc8fabdaf0)

Details

Provenance
gordonAuthored on Sep 30 2025, 3:27 PM
Parents
rG978e04ff5bcf: freebsd-update: Library ordering
Branches
Unknown
Tags
Unknown