OpenSSL 3.4.8
OpenSSL 3.4.8 is a security patch release. The most severe CVE fixed in this release is High. This release incorporates the following bug fixes and mitigations: Fixed DTLS retransmissions of handshake messages from a stale buffer offset. (CVE-2026-84782) Fixed excessive memory allocation in relative CRLDP processing. (CVE-2026-35189) Fixed potential CPU DoS via O(n^2) fragment reassembly in QUIC.…