Release openssl-fips-provider-3.0.7-11.el10_2 ALSA-2026:27746
Nobody has claimed this yet.
Assessment
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Newbie friendliness
- 35/100
- Issue type
- Bug
- Clarity
- Needs clarification
- Activity status
- Quiet
- Domain
- security
Research direction
The issue names the openssl-fips-provider packages and CVE-2026-31790 but mentions no repository files or tests. Start by locating how this repository records affected package releases, then review the CVE and package metadata. Done should follow the repository's update workflow for this exact release.
Written by the indexing model from the issue text.
Description
openssl-fips-provider security update
Severity: Moderate
Description
This package provides a custom build of the OpenSSL FIPS module that has been submitted to NIST for certification.
Security Fix(es):
- openssl: openssl: Information Disclosure from Uninitialized Memory via Invalid RSA Public Key (CVE-2026-31790)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected packages:
openssl-fips-provider-3.0.7-11.el10_2.x86_64
openssl-fips-provider-so-3.0.7-11.el10_2.x86_64
openssl-fips-provider-3.0.7-11.el10_2.s390x
openssl-fips-provider-so-3.0.7-11.el10_2.s390x
openssl-fips-provider-3.0.7-11.el10_2.ppc64le
openssl-fips-provider-so-3.0.7-11.el10_2.ppc64le
openssl-fips-provider-3.0.7-11.el10_2.aarch64
openssl-fips-provider-so-3.0.7-11.el10_2.aarch64
openssl-fips-provider-3.0.7-11.el10_2.x86_64_v2
openssl-fips-provider-so-3.0.7-11.el10_2.x86_64_v2
- Dominant language
- No language data
- Stars
- 2
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Getting set up
- No Dockerfile or Docker Compose file
- No pull request template
- Read the contributing guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from AlmaLinux/updates
-
Difficulty 1/5 Under an hour Newbie friendliness 90/100
-
Difficulty 1/5 Under an hour Newbie friendliness 85/100
-
Difficulty 1/5 Under an hour Newbie friendliness 60/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 62/100
-
Difficulty 1/5 Under an hour Newbie friendliness 20/100
All issues in AlmaLinux/updates
Similar issues
-
fix: confirmTwoFactorUser succeeds when 2FA is already enabled and appends 8 more recovery codesOpenbug
Difficulty 2/5 1-3 hours Newbie friendliness 90/100
VilnaCRM-Org/user-service#523 ·
Maintainers usually reply within 21 days
-
good first issue
Difficulty 2/5 1-3 hours Newbie friendliness 82/100
anoopcodehack/DevBoard#587 ·
Maintainers usually reply within 2 days
-
Difficulty 1/5 Under an hour Newbie friendliness 90/100
polkadot-js/phishing#5716 ·
-
bug
Difficulty 2/5 1-3 hours Newbie friendliness 90/100
juice-shop/juice-shop#3662 ·
Maintainers usually reply within 1 day
-
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
Maintainers usually reply within 2 days