CVE-2026-54876 | OpenSSL up to 3.6.3/4.0.1 OCSP Response Checking OCSP_response_get1_basic certs memory leak
A vulnerability was found in OpenSSL up to 3.6.3/4.0.1 and classified as problematic. This issue affects the function OCSP_response_get1_basic of the component OCSP Response Checking. Executing a manipulation of the argument certs can lead to memory leak.
This vulnerability is handled as CVE-2026-54876. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More