cbcvebase.

Debian Nss vulnerabilities

74 known vulnerabilities affecting debian/nss.

Total CVEs
74
CISA KEV
0
Public exploits
5
Exploited in wild
1
Severity breakdown
CRITICAL9HIGH20MEDIUM33LOW12

Vulnerabilities

Page 3 of 4
CVE-2023-5388P4MEDIUMCVSS 6.5fixed in firefox 124.0-1 (sid)2023
CVE-2023-5388 [MEDIUM] CVE-2023-5388: firefox - NSS was susceptible to a timing side-channel attack when performing RSA decrypti... NSS was susceptible to a timing side-channel attack when performing RSA decryption. This attack could potentially allow an attacker to recover the private data. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9. Scope: local sid: resolved (fixed in 124.0-1)
debian
CVE-2024-7531P4MEDIUMCVSS 6.5fixed in firefox 129.0-1 (sid)2024
CVE-2024-7531 [MEDIUM] CVE-2024-7531: firefox - Calling `PK11_Encrypt()` in NSS using CKM_CHACHA20 and the same buffer for input... Calling `PK11_Encrypt()` in NSS using CKM_CHACHA20 and the same buffer for input and output can result in plaintext on an Intel Sandy Bridge processor. In Firefox this only affects the QUIC header protection feature when the connection is using the ChaCha20-Poly1305 cipher suite. The most likely outcome is connection failure, but if the connection persists despite t
debian
CVE-2013-5606P4MEDIUMCVSS 5.8fixed in nss 2:3.15.3-1 (bookworm)2013
CVE-2013-5606 [MEDIUM] CVE-2013-5606: nss - The CERT_VerifyCert function in lib/certhigh/certvfy.c in Mozilla Network Securi... The CERT_VerifyCert function in lib/certhigh/certvfy.c in Mozilla Network Security Services (NSS) 3.15 before 3.15.3 provides an unexpected return value for an incompatible key-usage certificate when the CERTVerifyLog argument is valid, which might allow remote attackers to bypass intended access restrictions via a crafted certificate. Scope: local bookworm: resolved (f
debian
CVE-2009-2408P4MEDIUMCVSS 5.9fixed in nss 3.12.3-1 (bookworm)2009
CVE-2009-2408 [MEDIUM] CVE-2009-2408: nss - Mozilla Network Security Services (NSS) before 3.12.3, Firefox before 3.0.13, Th... Mozilla Network Security Services (NSS) before 3.12.3, Firefox before 3.0.13, Thunderbird before 2.0.0.23, and SeaMonkey before 1.1.18 do not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legit
debian
CVE-2013-0169P4LOWCVSS 2.6fixed in bouncycastle 1.48+dfsg-2 (bookworm)2013
CVE-2013-0169 [LOW] CVE-2013-0169: bouncycastle - The TLS protocol 1.1 and 1.2 and the DTLS protocol 1.0 and 1.2, as used in OpenS... The TLS protocol 1.1 and 1.2 and the DTLS protocol 1.0 and 1.2, as used in OpenSSL, OpenJDK, PolarSSL, and other products, do not properly consider timing side-channel attacks on a MAC check requirement during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical anal
debian
CVE-2015-7575P4MEDIUMCVSS 5.9fixed in gnutls28 3.3.15-1 (bookworm)2015
CVE-2015-7575 [MEDIUM] CVE-2015-7575: gnutls28 - Mozilla Network Security Services (NSS) before 3.20.2, as used in Mozilla Firefo... Mozilla Network Security Services (NSS) before 3.20.2, as used in Mozilla Firefox before 43.0.2 and Firefox ESR 38.x before 38.5.2, does not reject MD5 signatures in Server Key Exchange messages in TLS 1.2 Handshake Protocol traffic, which makes it easier for man-in-the-middle attackers to spoof servers by triggering a collision. Scope: local bookworm: resolved (fi
debian
CVE-2016-8635P4MEDIUMCVSS 5.3fixed in nss 2:3.25-1 (bookworm)2016
CVE-2016-8635 [MEDIUM] CVE-2016-8635: nss - It was found that Diffie Hellman Client key exchange handling in NSS 3.21.x was ... It was found that Diffie Hellman Client key exchange handling in NSS 3.21.x was vulnerable to small subgroup confinement attack. An attacker could use this flaw to recover private keys by confining the client DH key to small subgroup of the desired group. Scope: local bookworm: resolved (fixed in 2:3.25-1) bullseye: resolved (fixed in 2:3.25-1) forky: resolved (fixed in
debian
CVE-2018-12384P4LOWCVSS 5.9fixed in nss 2:3.39-1 (bookworm)2018
CVE-2018-12384 [MEDIUM] CVE-2018-12384: nss - When handling a SSLv2-compatible ClientHello request, the server doesn't generat... When handling a SSLv2-compatible ClientHello request, the server doesn't generate a new random value but sends an all-zero value instead. This results in full malleability of the ClientHello for SSLv2 used for TLS 1.2 in all versions prior to NSS 3.39. This does not impact TLS 1.3. Scope: local bookworm: resolved (fixed in 2:3.39-1) bullseye: resolved (fixed in 2:3.39
debian
CVE-2019-11727P4LOWCVSS 5.3fixed in firefox 68.0-1 (sid)2019
CVE-2019-11727 [MEDIUM] CVE-2019-11727: firefox - A vulnerability exists where it possible to force Network Security Services (NSS... A vulnerability exists where it possible to force Network Security Services (NSS) to sign CertificateVerify with PKCS#1 v1.5 signatures when those are the only ones advertised by server in CertificateRequest in TLS 1.3. PKCS#1 v1.5 signatures should not be used for TLS 1.3 messages. This vulnerability affects Firefox < 68. Scope: local sid: resolved (fixed in 68.0
debian
CVE-2016-9074P4MEDIUMCVSS 5.9fixed in firefox-esr 45.5.0esr-1 (bookworm)2016
CVE-2016-9074 [MEDIUM] CVE-2016-9074: firefox-esr - An existing mitigation of timing side-channel attacks is insufficient in some ci... An existing mitigation of timing side-channel attacks is insufficient in some circumstances. This issue is addressed in Network Security Services (NSS) 3.26.1. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50. Scope: local bookworm: resolved (fixed in 45.5.0esr-1) bullseye: resolved (fixed in 45.5.0esr-1) forky: resolved (fixed
debian
CVE-2013-1740P4MEDIUMCVSS 5.8fixed in nss 2:3.15.4-1 (bookworm)2013
CVE-2013-1740 [MEDIUM] CVE-2013-1740: nss - The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Secur... The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Security Services (NSS) before 3.15.4, when the TLS False Start feature is enabled, allows man-in-the-middle attackers to spoof SSL servers by using an arbitrary X.509 certificate during certain handshake traffic. Scope: local bookworm: resolved (fixed in 2:3.15.4-1) bullseye: resolved (fixed in
debian
CVE-2020-12413P4MEDIUMCVSS 5.9fixed in nss 2:3.17-1 (bookworm)2020
CVE-2020-12413 [MEDIUM] CVE-2020-12413: nss - The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS spe... The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites. Scope: local bookworm: resolved (fixed in 2:3.17-1) bullseye: resolved (fixed in 2:3.17-1) forky: resolved (fixed in 2:3.17-1) sid: resolved (fixed in 2:3.17-1) trixie: resolved (fixed in 2:3.17-1)
debian
CVE-2018-18508P4MEDIUMCVSS 6.5fixed in nss 2:3.42.1-1 (bookworm)2018
CVE-2018-18508 [MEDIUM] CVE-2018-18508: nss - In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed ... In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed signature can cause a crash due to a null dereference, resulting in a Denial of Service. Scope: local bookworm: resolved (fixed in 2:3.42.1-1) bullseye: resolved (fixed in 2:3.42.1-1) forky: resolved (fixed in 2:3.42.1-1) sid: resolved (fixed in 2:3.42.1-1) trixie: resolved (fixed in 2:3.4
debian
CVE-2019-17023P4MEDIUMCVSS 6.5fixed in firefox 72.0-1 (sid)2019
CVE-2019-17023 [MEDIUM] CVE-2019-17023: firefox - After a HelloRetryRequest has been sent, the client may negotiate a lower protoc... After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72. Scope: local sid: resolved (fixed in 72.0-1)
debian
CVE-2022-22747P4MEDIUMCVSS 6.5fixed in firefox 96.0-1 (sid)2022
CVE-2022-22747 [MEDIUM] CVE-2022-22747: firefox - After accepting an untrusted certificate, handling an empty pkcs7 sequence as pa... After accepting an untrusted certificate, handling an empty pkcs7 sequence as part of the certificate data could have lead to a crash. This crash is believed to be unexploitable. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5. Scope: local sid: resolved (fixed in 96.0-1)
debian
CVE-2011-3640P4LOWCVSS 7.1fixed in nss 3.13.1.with.ckbi.1.88-1 (bookworm)2011
CVE-2011-3640 [HIGH] CVE-2011-3640: nss - Untrusted search path vulnerability in Mozilla Network Security Services (NSS), ... Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug." Scope: local bookworm: resolved
debian
CVE-2009-2409P4LOWCVSS 5.1fixed in nss 3.12.3-1 (bookworm)2009
CVE-2009-2409 [MEDIUM] CVE-2009-2409: nss - The Network Security Services (NSS) library before 3.12.3, as used in Firefox; G... The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is
debian
CVE-2017-5462P4MEDIUMCVSS 5.3fixed in firefox 52.0.1-1 (sid)2017
CVE-2017-5462 [MEDIUM] CVE-2017-5462: firefox - A flaw in DRBG number generation within the Network Security Services (NSS) libr... A flaw in DRBG number generation within the Network Security Services (NSS) library where the internal state V does not correctly carry bits over. The NSS library has been updated to fix this issue to address this issue and Firefox ESR 52.1 has been updated with NSS version 3.28.4. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1
debian
CVE-2013-0791P4LOWCVSS 5.0fixed in nss 2:3.14.3-1 (bookworm)2013
CVE-2013-0791 [MEDIUM] CVE-2013-0791: nss - The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), ... The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted cert
debian
CVE-2013-1739P4MEDIUMCVSS 5.0fixed in nss 2:3.15.2-1 (bookworm)2013
CVE-2013-1739 [MEDIUM] CVE-2013-1739: nss - Mozilla Network Security Services (NSS) before 3.15.2 does not ensure that data ... Mozilla Network Security Services (NSS) before 3.15.2 does not ensure that data structures are initialized before read operations, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a decryption failure. Scope: local bookworm: resolved (fixed in 2:3.15.2-1) bullseye: resolved (fixed in 2:3.15.2-1
debian
Debian Nss vulnerabilities | cvebase