CVE-2025-4575General(openssl / openssl)

LOWCVSS 6.5 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch openssl openssl systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Issue summary: Use of -addreject option with the openssl x509 application adds a trusted use instead of a rejected use for a certificate. Impact summary: If a user intends to make a trusted certificate rejected for a particular use it will be instead marked as trusted for that use. A copy & paste error during minor refactoring of the code introduced this issue in the OpenSSL 3.5 version. If, for example, a trusted CA certificate should be trusted only for the purpose of authenticating TLS servers but not for CMS signature verification and the CMS signature verification is intended to be marked as rejected with the -addreject option, the resulting CA certificate will be trusted for CMS signature verification purpose instead. Only users which use the trusted certificate format who use the openssl x509 command line application to add rejected uses are affected by this issue. The issues affecting only the command line application are considered to be Low severity. The FIPS modules in 3.5, 3.4, 3.3, 3.2, 3.1 and 3.0 are not affected by this issue. OpenSSL 3.4, 3.3, 3.2, 3.1, 3.0, 1.1.1 and 1.0.2 are also not affected by this issue.

0.8/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-295

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

RISING

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openssl

Threat summary

  • Patch or workaround signal is available
  • 11 mentions across 10 observed days
  • Momentum state: rising

What's happening

  • Patch or workaround mentioned in 6 signals
  • Technical details provided in 1 signal
  • General: 6 classified signals
  • Disclosure: 2 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-04-06)
  • 11 total mentions across 10 days

Affected systems

Vendors
Products
openssl

1 version affected across 1 product

Deep dive

Activity timeline11 mentions / 10d
01122Mentions · 2026-02-13: 1Mentions · 2026-02-24: 1Mentions · 2026-03-07: 1Mentions · 2026-03-11: 1Mentions · 2026-03-15: 1Mentions · 2026-03-17: 1Mentions · 2026-03-21: 1Mentions · 2026-04-02: 1Mentions · 2026-04-04: 1Mentions · 2026-04-06: 2Patch / Workaround · 2026-03-07: 1Patch / Workaround · 2026-03-11: 1Patch / Workaround · 2026-03-21: 1Patch / Workaround · 2026-04-02: 1Patch / Workaround · 2026-04-06: 2Technical Details · 2026-03-07: 102-1302-2403-0703-1103-1503-1703-2104-0204-0404-06
Signal classification3 categories
General
654.5%
Patch
327.3%
Disclosure
218.2%
Referenced assets1 URL
Classification over time
DateTotalLabels
2026-02-131
General1
2026-02-241
General1
2026-03-071
Disclosure1
2026-03-111
Patch1
2026-03-151
General1
2026-03-171
General1
2026-03-211
General1
2026-04-021
Patch1
2026-04-041
General1
2026-04-062
Disclosure1Patch1
Full discourse11 posts
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    Disclosure

    今知るべき影響範囲と安全な対策をわかりやすく丁寧に解説します OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The blog post introduces OpenSSL 3.5’s CVE-2025-4575, outlining its impact and recommending appropriate countermeasures, but it does not disclose technical exploitation details or provide exploit code.

    00010156
    31 followersView on X
  • ケイ | 副業Webライター🇫🇷⚓⚽@Teeeda_worker
    General

    【アーカイブ】 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The article offers a concise overview of the OpenSSL 3.5 CVE-2025‑4575 vulnerability, discussing its impact and mitigation, but does not disclose PoC, exploit, or detailed technical information.

    00010140
    214 followersView on X
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    General

    【アーカイブ】 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The text references a blog article about the CVE-2025-4575 OpenSSL 3.5 vulnerability but provides no substantive technical or operational details.

    00010221
    31 followersView on X
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    General

    【アーカイブ】 【アーカイブ】 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The post references a blog article explaining CVE‑2025‑4575 but provides no evidence of exploits, patches, or technical specifics.

    0001070
    30 followersView on X
  • ケイ | 副業Webライター🇫🇷⚓⚽@Teeeda_worker
    Patch

    いま知るべき影響範囲と対策をやさしく整理。安心の解説です! OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The post offers a general overview of CVE‑2025‑4575 in OpenSSL 3.5, outlining its impact scope and mitigation measures, without detailing a PoC, exploit, or active exploitation.

    00000161
    207 followersView on X
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    General

    影響範囲から実践的な対策まで、要点をわかりやすく解説します。 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The content is a generic blog post that introduces CVE‑2025‑4575 and outlines its impact and mitigation, but it offers no detailed technical analysis, exploit code, or patch information.

    00000346
    31 followersView on X
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    Patch

    最新の脆弱性をやさしく解説。影響範囲と対策を要点で確認しよう OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The post outlines the CVE‑2025‑4575 vulnerability and provides mitigation guidance, but does not discuss PoCs, active exploitation, or specific technical exploit details.

    00000107
    32 followersView on X
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    General

    【アーカイブ】 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The post links to a blog explaining OpenSSL 3.5 CVE-2025-4575, including impact and countermeasures, but does not provide PoC, exploit details, or specific patch information.

    00000117
    31 followersView on X
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    Patch

    【アーカイブ】 【アーカイブ】 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The article focuses on providing patch or mitigation information for CVE‑2025‑4575 in OpenSSL 3.5, without mentioning active exploitation, PoCs, or detailed technical aspects.

    00000118
    32 followersView on X
  • Cyber Note 【IT&セキュリティ専門メディア】@CyberNote_media
    Disclosure

    【アーカイブ】 【アーカイブ】 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The Japanese blog post introduces the newly disclosed OpenSSL 3.5 vulnerability CVE‑2025‑4575, outlines its impact, and explains available mitigation steps.

    00000174
    32 followersView on X
  • ケイ | 副業Webライター🇫🇷⚓⚽@Teeeda_worker
    General

    【アーカイブ】 【アーカイブ】 OpenSSL 3.5の脆弱性「CVE-2025-4575」とは?影響範囲や対策をわかりやすく解説 https://www.cybernote.click/2025/05/26/openssl-3-5%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%80%8ccve-2025-4575%e3%80%8d%e3%81%a8%e3%81%af%ef%bc%9f%e5%bd%b1%e9%9f%bf%e7%af%84%e5%9b%b2%e3%82%84%e5%af%be%e7%ad%96%e3%82%92%e3%82%8f%e3%81%8b/?utm_source=rss&utm_medium=rss&utm_campaign=openssl-3-5%25e3%2581%25ae%25e8%2584%2586%25e5%25bc%25b1%25e6%2580%25a7%25e3%2580%258ccve-2025-4575%25e3%2580%258d%25e3%2581%25a8%25e3%2581%25af%25ef%25bc%259f%25e5%25bd%25b1%25e9%259f%25bf%25e7%25af%2584%25e5%259b%25b2%25e3%2582%2584%25e5%25af%25be%25e7%25ad%2596%25e3%2582%2592%25e3%2582%258f%25e3%2581%258b #ブログ仲間と繋がりたい #Webライター

    Post summary

    The post is a general informational article about the OpenSSL 3.5 vulnerability CVE‑2025‑4575, without providing PoC, exploit details, active exploitation evidence, or patch information.

    0000051
    215 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopensslopenssl3.5.0--

Explore more