{"id":38261,"date":"2026-01-30T18:05:41","date_gmt":"2026-01-30T10:05:41","guid":{"rendered":"https:\/\/www.deepin.org\/?p=38261"},"modified":"2026-01-30T18:05:41","modified_gmt":"2026-01-30T10:05:41","slug":"openssl-multiple-vulnerabilities-fixed","status":"publish","type":"post","link":"https:\/\/www.deepin.org.cn\/zh\/openssl-multiple-vulnerabilities-fixed\/","title":{"rendered":"\u7d27\u6025\u5b89\u5168\u66f4\u65b0 | OpenSSL \u591a\u6f0f\u6d1e\u4fee\u590d\uff0c\u8bf7\u5c3d\u5feb\u5347\u7ea7\uff01"},"content":{"rendered":"<img loading=\"lazy\" class=\"alignnone size-full wp-image-38264\" src=\"https:\/\/www.deepin.org\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1.png\" alt=\"\" width=\"900\" height=\"383\" srcset=\"https:\/\/www.deepin.org.cn\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1.png 900w, https:\/\/www.deepin.org.cn\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1-300x128.png 300w, https:\/\/www.deepin.org.cn\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1-150x64.png 150w, https:\/\/www.deepin.org.cn\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1-768x327.png 768w, https:\/\/www.deepin.org.cn\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1-24x10.png 24w, https:\/\/www.deepin.org.cn\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1-36x15.png 36w, https:\/\/www.deepin.org.cn\/wp-content\/uploads\/2026\/01\/image-22_\u526f\u672c-1-48x20.png 48w\" sizes=\"(max-width: 900px) 100vw, 900px\" \/><\/p>\n<p data-pm-slice=\"0 0 []\"><span data-font-family=\"default\">\u4eb2\u7231\u7684 deepin \u7528\u6237\u4e0e\u793e\u533a\u4f19\u4f34\u4eec\uff0c<\/span><\/p>\n<p data-pm-slice=\"0 0 []\"><span data-font-family=\"default\">\u8fd1\u671f\uff0cOpenSSL \u53d1\u5e03\u4e86\u591a\u4e2a\u5b89\u5168\u6f0f\u6d1e\u4fee\u590d\u516c\u544a\uff0c\u6d89\u53ca\u00a0<strong>13 \u4e2a\u5b89\u5168\u6f0f\u6d1e<\/strong>\uff0c\u5176\u4e2d\u5305\u62ec\u00a0<strong>2 \u4e2a\u9ad8\u5371\/\u4e2d\u5371\u6f0f\u6d1e<\/strong>\u3002\u4e3a\u786e\u4fdd\u60a8\u7684\u7cfb\u7edf\u5b89\u5168\uff0c\u6211\u4eec\u5f3a\u70c8\u5efa\u8bae\u6240\u6709\u7528\u6237\u5c3d\u5feb\u5347\u7ea7\u76f8\u5173\u8f6f\u4ef6\u5305\u3002<\/span><\/p>\n<p>&nbsp;<\/p>\n<section>\n<section>\n<section>\n<section>\n<section>\n<h3><strong>01 <\/strong>\u6f0f\u6d1e\u4fe1\u606f<\/h3>\n<p data-pm-slice=\"0 0 []\"><span data-font-family=\"default\">\u672c\u6b21\u4fee\u590d\u6d89\u53ca\u7684 CVE \u7f16\u53f7\u5982\u4e0b\uff1a<\/span><\/p>\n<p data-pm-slice=\"0 0 []\"><span data-font-family=\"default\">CVE-2025-9230\u3001CVE-2025-9231\u3001CVE-2025-9232\u3001CVE-2025-15467\u3001CVE-2025-15468\u3001CVE-2025-66199\u3001CVE-2025-68160\u3001CVE-2025-69418\u3001CVE-2025-69419\u3001CVE-2025-69420\u3001CVE-2025-69421\u3001CVE-2026-22795\u3001CVE-2026-22796<\/span><\/p>\n<p>&nbsp;<\/p>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<p data-pm-slice=\"0 0 []\"><strong>\u91cd\u70b9\u9ad8\u5371\/\u4e2d\u5371\u6f0f\u6d1e\u4fee\u590d<\/strong><\/p>\n<ul class=\"list-paddingleft-1\">\n<li>\n<p data-pm-slice=\"0 0 []\">CVE-2025-15467 | <strong>\u9ad8\u5371 (High)<\/strong><\/p>\n<\/li>\n<\/ul>\n<p>CMS AuthEnvelopedData \u89e3\u6790\u5806\u6808\u7f13\u51b2\u533a\u6ea2\u51fa\uff1a\u8be5\u6f0f\u6d1e\u5728\u7279\u5b9a\u6761\u4ef6\u4e0b\u53ef\u80fd\u5bfc\u81f4\u8fdc\u7a0b\u4ee3\u7801\u6267\u884c (RCE)\uff0c\u5efa\u8bae\u7acb\u5373\u66f4\u65b0\u3002<\/p>\n<ul class=\"list-paddingleft-1\">\n<li>CVE-2025-11187 | <strong>\u4e2d\u5371 (Moderate)<\/strong><\/li>\n<\/ul>\n<p>PKCS#12 PBMAC1 \u53c2\u6570\u9a8c\u8bc1\u7f3a\u5931\uff1a\u7f3a\u5c11\u5fc5\u8981\u9a8c\u8bc1\u53ef\u80fd\u89e6\u53d1\u57fa\u4e8e\u5806\u6808\u7684\u7f13\u51b2\u533a\u6ea2\u51fa\u3002<\/p>\n<p>&nbsp;<\/p>\n<section>\n<section>\n<section>\n<section>\n<section>\n<h3><strong>02 <\/strong>\u4fee\u590d\u7248\u672c\u4fe1\u606f<\/h3>\n<p data-pm-slice=\"0 0 []\"><span data-font-family=\"default\">\u5df2\u4fee\u590d\u7248\u672c\uff1a3.2.4-0deepin6\uff08libssl3 \u4e0e openssl \u5305\uff09<\/span><\/p>\n<p><strong><span data-pm-slice=\"1 1 [&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;box-sizing: border-box; font-style: normal; font-weight: 400; text-align: justify; font-size: 16px; color: rgb(62, 62, 62);&quot;,&quot;data-pm-slice&quot;:&quot;0 0 []&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;text-align: left; justify-content: flex-start; display: flex; flex-flow: row; margin: 10px 0px 0px; position: static; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;display: inline-block; vertical-align: bottom; width: auto; align-self: flex-end; flex: 0 0 auto; background-color: rgb(22, 62, 135); min-width: 5%; max-width: 100%; height: auto; padding: 2px 10px; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;text-align: justify; color: rgb(255, 255, 255); font-size: 15px; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;p&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;white-space: normal; margin: 0px; padding: 0px; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;node&quot;,{&quot;tagName&quot;:&quot;strong&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;}]\">\u6ce8\uff1a\u4f4e\u4e8e \u00a03.2.4-0deepin6 \u7684\u7248\u672c\u672a\u4fee\u8865\u76f8\u5173\u6f0f\u6d1e\u3002<\/span><\/strong><\/p>\n<p><strong><span data-pm-slice=\"1 1 [&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;box-sizing: border-box; font-style: normal; font-weight: 400; text-align: justify; font-size: 16px; color: rgb(62, 62, 62);&quot;,&quot;data-pm-slice&quot;:&quot;0 0 []&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;text-align: left; justify-content: flex-start; display: flex; flex-flow: row; margin: 10px 0px 0px; position: static; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;display: inline-block; vertical-align: bottom; width: auto; align-self: flex-end; flex: 0 0 auto; background-color: rgb(22, 62, 135); min-width: 5%; max-width: 100%; height: auto; padding: 2px 10px; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;text-align: justify; color: rgb(255, 255, 255); font-size: 15px; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;p&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;white-space: normal; margin: 0px; padding: 0px; box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;node&quot;,{&quot;tagName&quot;:&quot;strong&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;box-sizing: border-box;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;}]\">\u7248\u672c\u68c0\u67e5\u547d\u4ee4<\/span><\/strong><\/p>\n<section class=\"code-snippet__fix code-snippet__js\">\n<ul class=\"code-snippet__line-index code-snippet__js\">\n<li><code><span class=\"code-snippet__attribute\">apt<\/span> policy libssl3 openssl<\/code><\/li>\n<\/ul>\n<\/section>\n<p><strong><span data-pm-slice=\"1 1 [&quot;para&quot;,{&quot;tagName&quot;:&quot;section&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;box-sizing: border-box; font-style: normal; font-weight: 400; text-align: justify; font-size: 16px; color: rgb(62, 62, 62);&quot;,&quot;data-pm-slice&quot;:&quot;0 0 []&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;para&quot;,{&quot;tagName&quot;:&quot;p&quot;,&quot;attributes&quot;:{&quot;style&quot;:&quot;-webkit-tap-highlight-color: transparent; margin: 0px 0px 16px; padding: 0px; outline: 0px; max-width: 100%; clear: both; min-height: 1em; color: rgba(0, 0, 0, 0.9); font-family: \\&quot;PingFang SC\\&quot;, system-ui, -apple-system, BlinkMacSystemFont, \\&quot;Helvetica Neue\\&quot;, \\&quot;Hiragino Sans GB\\&quot;, \\&quot;Microsoft YaHei UI\\&quot;, \\&quot;Microsoft YaHei\\&quot;, Arial, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; orphans: 2; text-align: justify; text-indent: 0px; text-transform: none; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; white-space: normal; text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial; letter-spacing: 0.578px; font-size: 14px; line-height: 2; visibility: visible; box-sizing: border-box !important; overflow-wrap: break-word !important;&quot;},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;},&quot;node&quot;,{&quot;tagName&quot;:&quot;strong&quot;,&quot;attributes&quot;:{&quot;style&quot;:null},&quot;namespaceURI&quot;:&quot;http:\/\/www.w3.org\/1999\/xhtml&quot;}]\">\u7cfb\u7edf\u66f4\u65b0\u65b9\u5f0f<\/span><\/strong><\/p>\n<section class=\"code-snippet__fix code-snippet__js\">\n<ul class=\"code-snippet__line-index code-snippet__js\">\n<li><code><span class=\"code-snippet__built_in\">sudo<\/span>\u00a0apt update<\/code><code><\/code><code><\/code><\/li>\n<li><code><span class=\"code-snippet__built_in\">sudo<\/span> apt upgrade libssl3 openssl<\/code><\/li>\n<\/ul>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<p>&nbsp;<\/p>\n<section>\n<section>\n<section>\n<section>\n<section>\n<h3><strong>03 <\/strong><strong>\u65f6\u95f4\u7ebf<\/strong><\/h3>\n<p>01\u670828\u65e5 01:18 \u2014\u2014\u4e0a\u6e38 OpenSSL \u5b98\u65b9\u53d1\u5e03\u5b89\u5168\u516c\u544a<\/p>\n<p>01\u670828\u65e5 09:39 \u2014\u2014deepin \u542f\u52a8\u6f0f\u6d1e\u8ffd\u8e2a\u4e0e\u5206\u6790<\/p>\n<p>01\u670828\u65e5 16:32 \u2014\u2014\u5b8c\u6210\u8865\u4e01\u9002\u914d\uff0c\u63d0\u4ea4 PR \u5e76\u8fdb\u5165\u6784\u5efa\u6d41\u7a0b<\/p>\n<p>01\u670830\u65e5 15:51 \u2014\u2014\u5b8c\u6210\u6d4b\u8bd5\uff0c\u51c6\u5907\u5411\u4ed3\u5e93\u63a8\u9001\u66f4\u65b0<\/p>\n<section data-pm-slice=\"0 0 []\">\n<section>\u6ce8\uff1a\u4ee5\u4e0a\u65f6\u95f4\u5747\u4e3a\u5317\u4eac\u65f6\u95f4<\/section>\n<p>&nbsp;<\/p>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<\/section>\n<section><\/section>\n<section><\/section>\n<section>\n<section><strong>\u53c2\u8003\u8d44\u6599\uff1a<\/strong><\/section>\n<ul>\n<li>OpenSSL \u5b98\u65b9\u5b89\u5168\u516c\u544a\uff1a<\/li>\n<\/ul>\n<section>https:\/\/openssl-library.org\/news\/secadv\/20260127.txt<\/section>\n<p>&nbsp;<\/p>\n<ul>\n<li>Aisle \u6f0f\u6d1e\u5206\u6790\uff1a<\/li>\n<\/ul>\n<section>https:\/\/aisle.com\/blog\/aisle-discovered-12-out-of-12-openssl-vulnerabilities<\/section>\n<\/section>\n<section>\n<section>\n<section>\n<section>\n<section>\u00a0<\/section>\n<\/section>\n<\/section>\n<\/section>\n<\/section>","protected":false},"excerpt":{"rendered":"<p>\u4eb2\u7231\u7684 deepin \u7528\u6237\u4e0e\u793e\u533a\u4f19\u4f34\u4eec\uff0c \u8fd1\u671f\uff0cOpenSSL \u53d1\u5e03\u4e86\u591a\u4e2a\u5b89\u5168\u6f0f\u6d1e\u4fee\u590d\u516c\u544a\uff0c\u6d89\u53ca\u00a013 \u4e2a\u5b89\u5168\u6f0f\u6d1e\uff0c\u5176\u4e2d\u5305\u62ec\u00a02 \u4e2a\u9ad8\u5371\/\u4e2d\u5371\u6f0f\u6d1e\u3002\u4e3a\u786e\u4fdd\u60a8\u7684\u7cfb\u7edf\u5b89\u5168\uff0c\u6211\u4eec\u5f3a\u70c8\u5efa\u8bae\u6240\u6709\u7528\u6237\u5c3d\u5feb\u5347\u7ea7\u76f8\u5173\u8f6f\u4ef6\u5305\u3002 &nbsp; 01 \u6f0f\u6d1e\u4fe1\u606f \u672c\u6b21\u4fee\u590d\u6d89\u53ca\u7684 CVE \u7f16\u53f7\u5982\u4e0b\uff1a CVE-2025-9230\u3001CVE-2025-9231\u3001CVE-2025-9232\u3001CVE-2025-15467\u3001CVE-2 ...<a href=https:\/\/www.deepin.org.cn\/zh\/openssl-multiple-vulnerabilities-fixed\/>\u9605\u8bfb\u66f4\u591a<\/a><\/p>\n","protected":false},"author":18825,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[1,93],"tags":[],"_links":{"self":[{"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/posts\/38261"}],"collection":[{"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/users\/18825"}],"replies":[{"embeddable":true,"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/comments?post=38261"}],"version-history":[{"count":5,"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/posts\/38261\/revisions"}],"predecessor-version":[{"id":38267,"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/posts\/38261\/revisions\/38267"}],"wp:attachment":[{"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/media?parent=38261"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/categories?post=38261"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.deepin.org.cn\/zh\/wp-json\/wp\/v2\/tags?post=38261"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}