CVE-2026-63075

EUVD-2026-65485
Issue summary: When OpenSSL processes QUIC traffic from a peer that repeatedly
sends ack-eliciting packets while not acknowledging ACK-only responses, the
QUIC stack can retain ACK-only packet metadata for the lifetime of the
connection.

Impact summary: A remote peer that can complete a QUIC handshake can
cause connection-scoped memory growth which may lead to Denial of Service
through memory exhaustion, especially with sustained traffic or many concurrent
QUIC connections.

CWE: CWE-770: Allocation of Resources Without Limits or Throttling

Description: When the OpenSSL QUIC stack sends an ACK-only packet,
there is no requirement by the QUIC protocol that the peer will acknowledge
that ACK-only packet (i.e. it is itself not ack-eliciting). However, the OpenSSL
implementation stores the metadata about the ACK frames regardless.
In and of itself that's ok, but if a malicious peer establishes a connection, and
then drives the connection such that ACK-only packets are forced from the 
OpenSSL implementation peer (i.e., by sending numerous PING frames),
and then withholding any subsequent acks for ack-eliciting data, like
legitimate data, said malicious peer can force inappropriate memory growth
on the OpenSSL peer, potentially leading to a Denial of Service.

The fix is to ensure that we account for the transmission of the ACK-only
packet in the packet histories high and low watermark without actually storing
the ACK-only packet metadata itself.

FIPS impact: no
The OpenSSL FIPS module is not affected as the QUIC code is
outside the FIPS module boundary.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 54.48%
Affected Products (NVD)
VendorProductVersion
opensslopenssl
3.4.0 ≤
𝑥
< 3.4.7
opensslopenssl
3.5.0 ≤
𝑥
< 3.5.8
opensslopenssl
3.6.0 ≤
𝑥
< 3.6.4
opensslopenssl
4.0.0 ≤
𝑥
< 4.0.2
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
openssl
bookworm
3.0.20-1~deb12u2
fixed
bookworm (security)
3.0.22-1~deb12u1
fixed
bullseye
not-affected
forky
3.6.4-1
fixed
sid
3.6.5-1
fixed
trixie
3.5.7-1~deb13u2
fixed
trixie (security)
3.5.7-1~deb13u3
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openssl
bionic
not-affected
focal
not-affected
jammy
not-affected
noble
not-affected
resolute
Fixed 3.5.5-1ubuntu3.4
released
trusty
not-affected
xenial
not-affected
openssl-fips
jammy
not-affected
noble
not-affected
resolute
dne
openssl1.0
bionic
not-affected
jammy
dne
noble
dne
resolute
dne
nodejs
bionic
needs-triage
focal
not-affected
jammy
not-affected
noble
not-affected
resolute
not-affected
trusty
not-affected
xenial
needs-triage
edk2
bionic
not-affected
focal
not-affected
jammy
not-affected
noble
not-affected
resolute
needs-triage
xenial
not-affected
edk2-hwe
jammy
dne
noble
dne
resolute
needs-triage
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libopenssl-3-devel
suse enterprise desktop 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise sap 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise server 15 SP7
3.5.0-150700.5.50.1
fixed
libopenssl-3-fips-provider
suse enterprise desktop 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise sap 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise server 15 SP7
3.5.0-150700.5.50.1
fixed
libopenssl-3-fips-provider-32bit
suse enterprise desktop 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise sap 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise server 15 SP7
3.5.0-150700.5.50.1
fixed
libopenssl3
suse enterprise desktop 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise sap 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise server 15 SP7
3.5.0-150700.5.50.1
fixed
libopenssl3-32bit
suse enterprise desktop 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise sap 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise server 15 SP7
3.5.0-150700.5.50.1
fixed
openssl-3
suse enterprise desktop 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise sap 15 SP7
3.5.0-150700.5.50.1
fixed
suse enterprise server 15 SP7
3.5.0-150700.5.50.1
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
openssl
RHEL 9
1:3.5.8-1.el9_8
fixed
openssl-devel
RHEL 9
1:3.5.8-1.el9_8
fixed
openssl-libs
RHEL 9
1:3.5.8-1.el9_8
fixed
openssl-perl
RHEL 9
1:3.5.8-1.el9_8
fixed
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
openssl
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-debuginfo
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-debugsource
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-devel
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-fips-provider-latest
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-fips-provider-latest-debuginfo
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-libs
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-libs-debuginfo
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-perl
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-snapsafe-libs
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
openssl-snapsafe-libs-debuginfo
Amazon Linux 2023
1:3.5.8-1.amzn2023.0.1
fixed
Azure Linux logo
Azure Linux Releases
Azure Package
Release
openssl
Azure Linux 3.0
0:3.3.7-6.azl3
fixed