CVE-2026-28389
OpenSSL OpenSSL, SIMATIC CN 4100, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem
Issue summary: During processing of a crafted CMS EnvelopedData message with KeyAgreeRecipientInfo a NULL pointer dereference can happen. Impact summary: Applications that process attacker-controlled CMS data may crash before authentication or cryptographic operations occur resulting in Denial of Service. When a CMS EnvelopedData message that uses KeyAgreeRecipientInfo is processed, the optional parameters field of KeyEncryptionAlgorithmIdentifier is examined without checking for its presence. This results in a NULL pointer dereference if the field is missing. Applications and services that...
- CVSS
- 7.5
- EPSS
- 1.03% 60.3% percentile
- CISA KEV
- Not listed
- Published
- 2026.04.08