[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-DEBIAN-CVE-2025-69418":6},{"stargazers_count":4,"fetched_at":5},8,"2026-09-19T17:35:29.592Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":16,"duplicates":19,"related":20,"reserved_at":9,"published_at":21,"modified_at":22,"state":9,"summary":23,"references_raw":25,"kevs":32,"epss":9,"epss_history":33,"metrics":34,"affected":41},"DEBIAN-CVE-2025-69418","Issue summary: When using the low-level OCB API directly with AES-NI or\u003Cbr>other hardware-accelerated code paths, inputs whose length is not a multiple\u003Cbr>of 16 bytes can leave the final partial block unencrypted and unauthenticated.\u003Cbr>\u003Cbr>Impact summary: The trailing 1-15 bytes of a message may be exposed in\u003Cbr>cleartext on encryption and are not covered by the authentication tag,\u003Cbr>allowing an attacker to read or tamper with those bytes without detection.\u003Cbr>\u003Cbr>The low-level OCB encrypt and decrypt routines in the hardware-accelerated\u003Cbr>stream path process full 16-byte blocks but do not advance the input/output\u003Cbr>pointers. The subsequent tail-handling code then operates on the original\u003Cbr>base pointers, effectively reprocessing the beginning of the buffer while\u003Cbr>leaving the actual trailing bytes unprocessed. The authentication checksum\u003Cbr>also excludes the true tail bytes.\u003Cbr>\u003Cbr>However, typical OpenSSL consumers using EVP are not affected because the\u003Cbr>higher-level EVP and provider OCB implementations split inputs so that full\u003Cbr>blocks and trailing partial blocks are processed in separate calls, avoiding\u003Cbr>the problematic code path. Additionally, TLS does not use OCB ciphersuites.\u003Cbr>The vulnerability only affects applications that call the low-level\u003Cbr>CRYPTO_ocb128_encrypt() or CRYPTO_ocb128_decrypt() functions directly with\u003Cbr>non-block-aligned lengths in a single call on hardware-accelerated builds.\u003Cbr>For these reasons the issue was assessed as Low severity.\u003Cbr>\u003Cbr>The FIPS modules in 3.6, 3.5, 3.4, 3.3, 3.2, 3.1 and 3.0 are not affected\u003Cbr>by this issue, as OCB mode is not a FIPS-approved algorithm.\u003Cbr>\u003Cbr>OpenSSL 3.6, 3.5, 3.4, 3.3, 3.0 and 1.1.1 are vulnerable to this issue.\u003Cbr>\u003Cbr>OpenSSL 1.0.2 is not affected by this issue.",null,[],[],[],[14],{"_key":15},"CVE-2025-69418",[17],{"_key":18},"DLA-4490-1",[],[],"2026-01-27T16:16:33.253Z","2026-06-15T19:05:59.951428937Z",{"cisa_kev":24,"cisa_ransomware":24,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[26],{"url":27,"sources":28,"tags":30},"https://security-tracker.debian.org/tracker/CVE-2025-69418",[29],"osv_debian",[31],"Advisory",[],[],[35],{"source":29,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":36,"cvss_v4_0":9},{"baseScore":37,"baseSeverity":9,"vectorString":38,"impactScore":39,"exploitabilityScore":40},4,"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N",4.2,3.6,[42],{"ecosystem":43,"name":44,"vendor":45,"product":44,"cpe_part":9,"purl_type":46,"purl_namespace":45,"purl_name":44,"source":9,"versions":47},"Debian","openssl","debian","deb",[48,52,53,57,60,63],{"version":49,"is_range":50,"range_type":51,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"all",true,"ecosystem",{"version":49,"is_range":50,"range_type":51,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":54,"is_range":50,"range_type":51,"version_start":9,"version_start_type":9,"version_end":55,"version_end_type":56,"fixed_in":9},"lt1_1_1w_0+deb11u5","1.1.1w-0+deb11u5","excluding",{"version":58,"is_range":50,"range_type":51,"version_start":9,"version_start_type":9,"version_end":59,"version_end_type":56,"fixed_in":9},"lt3_0_18_1~deb12u2","3.0.18-1~deb12u2",{"version":61,"is_range":50,"range_type":51,"version_start":9,"version_start_type":9,"version_end":62,"version_end_type":56,"fixed_in":9},"lt3_5_4_1~deb13u2","3.5.4-1~deb13u2",{"version":64,"is_range":50,"range_type":51,"version_start":9,"version_start_type":9,"version_end":65,"version_end_type":56,"fixed_in":9},"lt3_5_5_1","3.5.5-1"]