{"id":"CGA-g2rx-fmp7-372f","modified":"2026-09-07T01:35:58.882196832Z","published":"2025-10-30T21:44:27Z","upstream":["CVE-2024-5535","GHSA-4fc7-mvrr-wv2c"],"references":[{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2024/06/27/1"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2024/08/15/1"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2024/06/28/4"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20241025-0010/"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20240712-0005/"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20241025-0006/"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/4ada436a1946cbb24db5ab4ca082b69c1bc10f37"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/e86ac436f0bd54d4517745483e2315650fae7b2c"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/99fb785a5f85315b95288921a321a935ea29a51e"},{"type":"FIX","url":"https://github.com/openssl/openssl/commit/cf6f91f6121f4db167405db2f0de410a456f260c"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-265688.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-277137.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-398330.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-613116.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-769027.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-915275.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/5xxx/CVE-2024-5535.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-5535"},{"type":"ADVISORY","url":"https://www.openssl.org/news/secadv/20240627.txt"},{"type":"FIX","url":"https://github.openssl.org/openssl/extended-releases/commit/9947251413065a05189a63c9b7a6c1d4e224c21c"},{"type":"FIX","url":"https://github.openssl.org/openssl/extended-releases/commit/b78ec0824da857223486660177d3b1f255c65d87"}],"affected":[{"package":{"name":"openssl-provider-fips-3.1.2","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/openssl-provider-fips-3.1.2?arch=x86_64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0"}]}],"ecosystem_specific":{"components":[{"latest_event_status":"false_positive_determination","latest_event_timestamp":"2025-05-22T13:08:02Z","component_name":"openssl-provider-fips-3.1.2","component_version":"","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/openssl-provider-fips-3.1.2"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-g2rx-fmp7-372f.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H"}]}