Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade') Affecting openssl package, versions [3.5.0,3.5.6)[3.6.0,3.6.2)


Severity

Recommended
0.0
medium
0
10

CVSS assessment by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.02% (5th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-CONAN-OPENSSL-15520214
  • published13 Mar 2026
  • disclosed13 Mar 2026
  • creditViktor Dukhovni

Introduced: 13 Mar 2026

CVE-2026-2673  (opens in a new tab)
CWE-757  (opens in a new tab)

How to fix?

Upgrade openssl to version 3.5.6, 3.6.2 or higher.

Overview

Affected versions of this package are vulnerable to Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade') in the TLS 1.3 server key agreement group selection when the server configuration includes the 'DEFAULT' keyword. An attacker can influence the negotiation to use a less preferred key agreement group by manipulating the client's initial keyshare predictions, potentially resulting in the use of weaker or unintended cryptographic groups.

Note:

No OpenSSL FIPS modules are affected by this issue, the code in question lies outside the FIPS boundary.

CVSS Base Scores

version 4.0
version 3.1