cbcvebase.

Debian Nss vulnerabilities

74 known vulnerabilities affecting debian/nss.

Total CVEs
74
CISA KEV
0
Public exploits
5
Exploited in wild
1
Severity breakdown
CRITICAL9HIGH20MEDIUM33LOW12

Vulnerabilities

Page 4 of 4
CVE-2014-1491P4MEDIUMCVSS 4.3fixed in nss 2:3.15.4-1 (bookworm)2014
CVE-2014-1491 [MEDIUM] CVE-2014-1491: nss - Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefo... Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does not properly restrict public values in Diffie-Hellman key exchanges, which makes it easier for remote attackers to bypass cryptographic protection mechanisms in ticket handli
debian
CVE-2016-9574P4MEDIUMCVSS 5.9fixed in nss 2:3.25-1 (bookworm)2016
CVE-2016-9574 [MEDIUM] CVE-2016-9574: nss - nss before version 3.30 is vulnerable to a remote denial of service during the s... nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA. Scope: local bookworm: resolved (fixed in 2:3.25-1) bullseye: resolved (fixed in 2:3.25-1) forky: resolved (fixed in 2:3.25-1) sid: resolved (fixed in 2:3.25-1) trixie: resolved (fixed in 2:3.25-1)
debian
CVE-2020-6829P4MEDIUMCVSS 5.3fixed in firefox 80.0-1 (sid)2020
CVE-2020-6829 [MEDIUM] CVE-2020-6829: firefox - When performing EC scalar point multiplication, the wNAF point multiplication al... When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial information about the nonce used during signature generation. Given an electro-magnetic trace of a few signature generations, the private key could have been computed. This vulnerability affects Firefox < 80 and Firefox for Android < 80. Scope: loca
debian
CVE-2013-1620P4LOWCVSS 2.6fixed in nss 2:3.14.3-1 (bookworm)2013
CVE-2013-1620 [LOW] CVE-2013-1620: nss - The TLS implementation in Mozilla Network Security Services (NSS) does not prope... The TLS implementation in Mozilla Network Security Services (NSS) does not properly consider timing side-channel attacks on a noncompliant MAC check operation during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data for crafted packets, a related is
debian
CVE-2012-0441P4MEDIUMCVSS 5.0fixed in nss 3.13.4-1 (bookworm)2012
CVE-2012-0441 [MEDIUM] CVE-2012-0441: nss - The ASN.1 decoder in the QuickDER decoder in Mozilla Network Security Services (... The ASN.1 decoder in the QuickDER decoder in Mozilla Network Security Services (NSS) before 3.13.4, as used in Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10, allows remote attackers to cause a denial of service (application crash) via a zero-length item, as demonstrat
debian
CVE-2015-2730P4MEDIUMCVSS 4.3fixed in nss 2:3.19.1-1 (bookworm)2015
CVE-2015-2730 [MEDIUM] CVE-2015-2730: nss - Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefo... Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors. Scope: local bookworm: resolved (
debian
CVE-2015-2721P4MEDIUMCVSS 4.3fixed in nss 2:3.19.1-1 (bookworm)2015
CVE-2015-2721 [MEDIUM] CVE-2015-2721: nss - Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox ... Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, a
debian
CVE-2014-1492P4MEDIUMCVSS 4.3fixed in nss 2:3.16-1 (bookworm)2014
CVE-2014-1492 [MEDIUM] CVE-2014-1492: nss - The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checkin... The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate. Scope: local bookworm: resolved (
debian
CVE-2020-12401P4MEDIUMCVSS 4.7fixed in firefox 80.0-1 (sid)2020
CVE-2020-12401 [MEDIUM] CVE-2020-12401: firefox - During ECDSA signature generation, padding applied in the nonce designed to ensu... During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This vulnerability affects Firefox < 80 and Firefox for Android < 80. Scope: local sid: resolved (fixed in 80.0-1)
debian
CVE-2020-12400P4MEDIUMCVSS 4.7fixed in firefox 80.0-1 (sid)2020
CVE-2020-12400 [MEDIUM] CVE-2020-12400: firefox - When converting coordinates from projective to affine, the modular inversion was... When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80. Scope: local sid: resolved (fixed in 80.0-1)
debian
CVE-2010-3170P4MEDIUMCVSS 4.3fixed in nss 3.12.8-1 (bookworm)2010
CVE-2010-3170 [MEDIUM] CVE-2010-3170: nss - Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 ... Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 recognize a wildcard IP address in the subject's Common Name field of an X.509 certificate, which might allow man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority
debian
CVE-2023-6135P4MEDIUMCVSS 4.3fixed in firefox 121.0-1 (sid)2023
CVE-2023-6135 [MEDIUM] CVE-2023-6135: firefox - Multiple NSS NIST curves were susceptible to a side-channel attack known as "Min... Multiple NSS NIST curves were susceptible to a side-channel attack known as "Minerva". This attack could potentially allow an attacker to recover the private key. This vulnerability affects Firefox < 121. Scope: local sid: resolved (fixed in 121.0-1)
debian
CVE-2020-12399P4MEDIUMCVSS 4.4fixed in firefox 77.0-1 (sid)2020
CVE-2020-12399 [MEDIUM] CVE-2020-12399: firefox - NSS has shown timing differences when performing DSA signatures, which was explo... NSS has shown timing differences when performing DSA signatures, which was exploitable and could eventually leak private keys. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9. Scope: local sid: resolved (fixed in 77.0-1)
debian
CVE-2020-12402P4MEDIUMCVSS 4.4fixed in nss 2:3.53.1-1 (bookworm)2020
CVE-2020-12402 [MEDIUM] CVE-2020-12402: nss - During RSA key generation, bignum implementations used a variation of the Binary... During RSA key generation, bignum implementations used a variation of the Binary Extended Euclidean Algorithm which entailed significantly input-dependent flow. This allowed an attacker able to perform electromagnetic-based side channel attacks to record traces leading to the recovery of the secret primes. *Note:* An unmodified Firefox browser does not generate RSA ke
debian
Debian Nss vulnerabilities | cvebase