Skip to content

CVE-2025-15467 in OpenSSL 3.0.16 #10040

@frittsy

Description

@frittsy

Describe the bug

Update OpenSSL to 3.0.19 to address CVE-2025-15467

Regression Issue

  • Select this option if this issue appears to be a regression.

Expected Behavior

OpenSSL is updated to a version that does not contain the CVE

Current Behavior

AWS CLI contains a version of OpenSSL with the CVE

Reproduction Steps

N/A

Possible Solution

No response

Additional Information/Context

No response

CLI version used

2.33.5

Environment details (OS name and version, etc.)

Linux, Windows, macOS

Metadata

Metadata

Assignees

Labels

CVEbugThis issue is a bug.p3This is a minor priority issue

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions