Ostorlab[verified]@OstorlabSecPatch
This advisory announces CVE‑2025‑69418, a low‑severity OpenSSL OCB partial‑block encryption flaw, provides detailed technical information, and recommends upgrading to OpenSSL 3.6.1 with additional mitigation steps.
Paul Ducklin@duckblogPatch
OpenSSL 3.6.1 has been released with 12 security patches, including a fix for CVE‑2025‑69418 that prevents partial AES encryption leaks; users are urged to apply the update.
Lambda Watchdog@LambdaWatchdogPatch
The post announces that CVE-2025-69418 has been removed from the latest AWS Lambda base images, with no additional technical details, PoC, or exploit information provided.
Lambda Watchdog@LambdaWatchdogGeneral
AWS Lambda base image scans indicate that CVE-2025-69418 is no longer present in the latest images, suggesting it has been removed or fixed in newer releases.
Lambda Watchdog@LambdaWatchdogDisclosure
A new high‑severity CVE (CVE‑2025‑69418) affecting the OpenSSL FIPS provider in AWS Lambda base images has been identified, with links for further details.
〒@teenigma_Disclosure
An OpenSSL security advisory lists CVE-2025-11187, CVE-2025-15467, and a range of lower‑severity CVEs with ratings, but provides no technical details, PoC, exploit code, or patch information.
TRONCAL Yannick@ytroncalPatch
The article announces the release of OpenSSL 3.6.1, which includes patches for several CVEs. No PoC, exploit, or active exploitation claims are mentioned.