ますだまさる[verified]@m_masaruGeneral
The post lists multiple CVEs and explains that none of them impact SSL implementations, citing high‑level technical reasons for each.
Syed Aquib[verified]@syedaquib77Disclosure
An alert detailing multiple memory-safety and parsing bugs in OpenSSL 3.6.x, with patch releases, attack vectors, and mitigation guidance, but no active exploitation or PoC evidence.
cPanel@cPanelPatch
This post announces that EasyApache 4 version 25.54 includes patches for several CVEs, primarily updating packages and fixing the vulnerabilities.
草薙 沙耶(KUSANAGI)@kusanagi_sayaPatch
This release update for the OpenSSL module includes a new version (3.5.6-1) that patches several CVEs, providing a vendor-imposed fix.
Kazuki Omo@omokazukiPatch
The post announces new OpenSSL releases that address CVE-2026-31790 and related low‑severity CVEs, thereby providing a patch update for affected versions.
Ferramentas Linux@Cezar_H_LinuxPatch
The tweet announces that CVE-2026-28390 (an OpenSSL NULL crash) has been patched, offers no PoC or exploit details, and hints at upcoming CMS vulnerabilities.
Ferramentas Linux@Cezar_H_LinuxPoC
The tweet presents a proof‑of‑concept attack using a crafted TLS packet to trigger a NULL pointer in OpenSSL (CVE‑2026‑28390) and provides a distro‑agnostic fix script and iptables workaround.
Lambda Watchdog@LambdaWatchdogDisclosure
AWS has reported a new HIGH severity CVE-2026-28390 affecting the openssl-fips-provider in Lambda base images, with details provided via GitHub and Lambdawatchdog.