CVE-2026-75803
Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
25/08/2026
Última modificación:
25/08/2026
Descripción
*** Pendiente de traducción *** Issue summary: ChaCha20-Poly1305 and AES-OCB decryption with an empty<br />
ciphertext can report success without verifying the supplied authentication<br />
tag when the operation is finalized by calling the EVP_Cipher() function.<br />
<br />
Impact summary: Applications calling EVP_Cipher() on an empty ciphertext and<br />
expecting the call to check the AEAD tag may accept forged messages.<br />
<br />
CWE: CWE-354 (Improper Validation of Integrity Check Value)<br />
<br />
Description: The EVP_Cipher() API call for AEAD ciphers behaves like a one<br />
shot encryption and decryption call. It also verifies the AEAD tag after the<br />
decryption operation. However for AES-OCB and ChaCha20-Poly1305 ciphers<br />
it skipped the AEAD tag verification when an empty ciphertext was passed to<br />
the function. The callers of this function might believe that a successful<br />
return indicates a valid AEAD tag for these ciphers, even when that has not<br />
truly been validated in this case.<br />
<br />
FIPS impact: no<br />
The FIPS modules in 4.0, 3.6, 3.5, 3.4, and 3.0 are not affected by this CVE<br />
as the affected algorithms are not FIPS approved and thus not implemented<br />
in the FIPS module.
Impacto
Referencias a soluciones, herramientas e información
- https://github.com/openssl/openssl/commit/119ab9555dc62275bbd71f6f49529b1a44feba42
- https://github.com/openssl/openssl/commit/3621257986e27e540bf96a11570929a6e5a9e05b
- https://github.com/openssl/openssl/commit/6c7aa6f8f6449b7fe0137ee8be65fcd239bd7d6a
- https://github.com/openssl/openssl/commit/bdeb0cd994d915342787f117ee75044f0dc36f34
- https://github.com/openssl/openssl/commit/bf95f5f772e9362f87b25cfa2f8cb15d984865b9
- https://openssl-library.org/news/secadv/20260825.txt



