chiprook
← Security
SecurityOctober 6, 2026, 15:49

LibreSSL 4.3.3 fixes OCSP responder authorization bypass

LibreSSL 4.3.3 is out as a maintenance update to the OpenBSD-developed TLS and cryptography library. The headline fix closes an OCSP responder authorization bypass in libtls and the ocspcheck utility, with additional corrections for DTLS, certificate verification and macOS/Windows builds.

LibreSSL 4.3.3 fixes OCSP responder authorization bypass
#LibreSSL#OpenBSD#OpenSSL
Read next
Security

Apache ZooKeeper authorization bypass found in deleteContainer path

Security

CVE-2026-48710 (BadHost): malformed Host header bypasses Starlette path authorization

Security

Flock drones deployed as first responders in some US cities

Security

pqc-bench Part 2: X25519MLKEM768 overhead drops to 1 ms with session resumption