# New vulnerabilities CVE-2023-0465 and CVE-2023-0466 in openssl

**URL:** <https://discuss.zetetic.net/t/new-vulnerabilities-cve-2023-0465-and-cve-2023-0466-in-openssl/5909>\
**Category:** SQLCipher\
**Created:** [May 2, 2023, 10:03am UTC](https://discuss.zetetic.net/t/new-vulnerabilities-cve-2023-0465-and-cve-2023-0466-in-openssl/5909 "2023-05-02T10:03:29Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Fred](https://avatars.discourse-cdn.com/v4/letter/f/db5fbb/32.png) [@Fred](https://discuss.zetetic.net/u/Fred)\
**Post date:** [May 2, 2023, 10:03am UTC](https://discuss.zetetic.net/t/new-vulnerabilities-cve-2023-0465-and-cve-2023-0466-in-openssl/5909/1 "2023-05-02T10:03:29Z")

</div>

Our internal tool reported new vulnerabilities CVE-2023-0465 and CVE-2023-0466 in openssl.

Does these vulnerabilities affect the zetetic library net.zetetic:android-database-sqlcipher?

---

<div class="post-metadata">

**Author:** ![developernotes](https://sea2.discourse-cdn.com/flex016/user_avatar/discuss.zetetic.net/developernotes/32/1309_2.png) [@developernotes](https://discuss.zetetic.net/u/developernotes)\
**Post date:** [May 2, 2023, 1:06pm UTC](https://discuss.zetetic.net/t/new-vulnerabilities-cve-2023-0465-and-cve-2023-0466-in-openssl/5909/2 "2023-05-02T13:06:47Z")

</div>

Hi @Fred,

Neither SQLCipher core, nor SQLCipher for Android are affected by those CVE’s. SQLCipher does not use any of the impacted certificate/X.509 features.
