[CLSA-2026:1775053879] Fix CVE(s): CVE-2025-3085
Type:
security
Severity:
Critical
Release date:
2026-04-01 14:31:23 UTC
Description:
* SECURITY UPDATE: Intermediate certificate revocation not checked with CRL - debian/patches/CVE-2025-3085.patch: add X509_V_FLAG_CRL_CHECK_ALL flag so OpenSSL validates the entire certificate chain against the CRL, not only the leaf certificate - CVE-2025-3085
Updated packages:
  • mongodb44_4.4.29-1+tuxcare.els3_amd64.deb
    sha:97ea571647edc88f0be25a33a82d531ddccc8842
  • mongodb44-mongos_4.4.29-1+tuxcare.els3_amd64.deb
    sha:b0b257de27259dce82d074b50c25ed6c840cce90
  • mongodb44-server_4.4.29-1+tuxcare.els3_amd64.deb
    sha:ded1c47ed100ff6f7ab758ad2d6600a912b46071
  • mongodb44-shell_4.4.29-1+tuxcare.els3_amd64.deb
    sha:f6fcaddb051c0dc095e31ebf6936819212b7c521
  • mongodb44_4.4.29-1+tuxcare.els3_arm64.deb
    sha:a95687946cba27dcfd55e9ccacc6f2482454abd7
  • mongodb44-mongos_4.4.29-1+tuxcare.els3_arm64.deb
    sha:d0d03f83228ac0d484fbfd4f38f9e540b9ffb694
  • mongodb44-server_4.4.29-1+tuxcare.els3_arm64.deb
    sha:f7c524c588091e255e6b0efef4c80b533fe6de23
  • mongodb44-shell_4.4.29-1+tuxcare.els3_arm64.deb
    sha:e97d5a649fd6e0ad8c0ae3cfc7a2f88221168700
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.