OpenSSL security advisory (AV26-980)
Canadian Cyber Centre advisory AV26-980 lists multiple vulnerable OpenSSL branches and urges administrators to apply updates promptly.
The Canadian Centre for Cyber Security issued advisory AV26-980 on October 1, 2026, covering OpenSSL vulnerabilities disclosed as of September 29, 2026. Affected versions include OpenSSL prior to 1.0.2zs, 1.1.1zj, 3.0.23, 3.4.8, 3.5.9, 3.6.5, and 4.0.3. Users and administrators are encouraged to review the linked advisory and apply updates as they become available.
- Affected OpenSSL branches: before 1.0.2zs, 1.1.1zj, 3.0.23, 3.4.8, 3.5.9, 3.6.5, and 4.0.3.
- Administrators urged to apply updates as they become available.
Full article69 words · extracted from cyber.gc.ca · click to collapse
Serial number: AV26-980
Date: October 1, 2026
As of September 29, 2026, OpenSSL is affected by vulnerabilities in the following product:
- OpenSSL
- Prior to 1.0.2zs
- Prior to 1.1.1zj
- Prior to 3.0.23
- Prior to 3.4.8
- Prior to 3.5.9
- Prior to 3.6.5
- Prior to 4.0.3
The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available.
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/openssl-security-advisory-av26-980