cbcvebase.

Mozilla Nss vulnerabilities

77 known vulnerabilities affecting mozilla/nss.

Total CVEs
77
CISA KEV
0
Public exploits
6
Exploited in wild
1
Severity breakdown
CRITICAL11HIGH25MEDIUM37LOW4

Vulnerabilities

Page 3 of 4
CVE-2019-11729P4HIGHCVSS 7.5≥ 0, < 2:3.45-12019-07-23
CVE-2019-11729 [HIGH] CVE-2019-11729: Empty or malformed p256-ECDH public keys may trigger a segmentation fault due values being improperly sanitized before being copied into memory and us Empty or malformed p256-ECDH public keys may trigger a segmentation fault due values being improperly sanitized before being copied into memory and used. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
osv
CVE-2016-1938P4MEDIUMCVSS 6.5≤ 3.20.12016-01-31
CVE-2016-1938 [MEDIUM] CWE-310 CVE-2016-1938: The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Security Services (NSS) before 3.21 The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, improperly divides numbers, which might make it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging use of the (1) mp_div or (2) mp_exptmod function.
nvdosv
CVE-2023-5388P4MEDIUMCVSS 6.5≥ 0, < 2:3.98-12024-03-19
CVE-2023-5388 [MEDIUM] CVE-2023-5388: NSS was susceptible to a timing side-channel attack when performing RSA decryption NSS was susceptible to a timing side-channel attack when performing RSA decryption. This attack could potentially allow an attacker to recover the private data. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
osv
CVE-2024-7531P4MEDIUMCVSS 6.5≥ 0, < 2:3.103-12024-08-06
CVE-2024-7531 [MEDIUM] CVE-2024-7531: Calling `PK11_Encrypt()` in NSS using CKM_CHACHA20 and the same buffer for input and output can result in plaintext on an Intel Sandy Bridge processor Calling `PK11_Encrypt()` in NSS using CKM_CHACHA20 and the same buffer for input and output can result in plaintext on an Intel Sandy Bridge processor. In Firefox this only affects the QUIC header protection feature when the connection is using the ChaCha20-Poly1305 cipher suite. The most likely outcome is con
osv
CVE-2013-5606P4MEDIUMCVSS 5.8≥ 0, < 2:3.15.3-12013-11-18
CVE-2013-5606 [MEDIUM] CVE-2013-5606: The CERT_VerifyCert function in lib/certhigh/certvfy The CERT_VerifyCert function in lib/certhigh/certvfy.c in Mozilla Network Security Services (NSS) 3.15 before 3.15.3 provides an unexpected return value for an incompatible key-usage certificate when the CERTVerifyLog argument is valid, which might allow remote attackers to bypass intended access restrictions via a crafted certificate.
osv
CVE-2009-2408P4MEDIUMCVSS 5.9≥ 0, < 3.12.3-12009-07-30
CVE-2009-2408 [MEDIUM] CVE-2009-2408: Mozilla Network Security Services (NSS) before 3 Mozilla Network Security Services (NSS) before 3.12.3, Firefox before 3.0.13, Thunderbird before 2.0.0.23, and SeaMonkey before 1.1.18 do not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority. NOTE: this
osv
CVE-2013-0169P4LOWCVSS 2.6≥ 0, < 2:3.14.3-12013-02-08
CVE-2013-0169 [LOW] CVE-2013-0169: The TLS protocol 1 The TLS protocol 1.1 and 1.2 and the DTLS protocol 1.0 and 1.2, as used in OpenSSL, OpenJDK, PolarSSL, and other products, do not properly consider timing side-channel attacks on a MAC check requirement during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data for crafted packets, aka the "Lucky Thirteen" issue.
osv
CVE-2015-7575P4MEDIUMCVSS 5.9≥ 0, < 2:3.21-12016-01-09
CVE-2015-7575 [MEDIUM] CVE-2015-7575: Mozilla Network Security Services (NSS) before 3 Mozilla Network Security Services (NSS) before 3.20.2, as used in Mozilla Firefox before 43.0.2 and Firefox ESR 38.x before 38.5.2, does not reject MD5 signatures in Server Key Exchange messages in TLS 1.2 Handshake Protocol traffic, which makes it easier for man-in-the-middle attackers to spoof servers by triggering a collision.
osv
CVE-2016-8635P4MEDIUMCVSS 5.9v3.21.x2018-08-01
CVE-2016-8635 [MEDIUM] CWE-358 CVE-2016-8635: It was found that Diffie Hellman Client key exchange handling in NSS 3.21.x was vulnerable to small It was found that Diffie Hellman Client key exchange handling in NSS 3.21.x was vulnerable to small subgroup confinement attack. An attacker could use this flaw to recover private keys by confining the client DH key to small subgroup of the desired group.
nvdosv
CVE-2018-12384P4MEDIUMCVSS 5.9≥ 0, < 2:3.39-12019-04-29
CVE-2018-12384 [MEDIUM] CVE-2018-12384: When handling a SSLv2-compatible ClientHello request, the server doesn't generate a new random value but sends an all-zero value instead When handling a SSLv2-compatible ClientHello request, the server doesn't generate a new random value but sends an all-zero value instead. This results in full malleability of the ClientHello for SSLv2 used for TLS 1.2 in all versions prior to NSS 3.39. This does not impact TLS 1.3.
osv
CVE-2019-11727P4MEDIUMCVSS 5.3≥ 0, < 2:3.45-12019-07-23
CVE-2019-11727 [MEDIUM] CVE-2019-11727: A vulnerability exists where it possible to force Network Security Services (NSS) to sign CertificateVerify with PKCS#1 v1 A vulnerability exists where it possible to force Network Security Services (NSS) to sign CertificateVerify with PKCS#1 v1.5 signatures when those are the only ones advertised by server in CertificateRequest in TLS 1.3. PKCS#1 v1.5 signatures should not be used for TLS 1.3 messages. This vulnerability affects Firefox < 68.
osv
CVE-2016-9074P4MEDIUMCVSS 5.9≥ 0, < 2:3.26.2-12018-06-11
CVE-2016-9074 [MEDIUM] CVE-2016-9074: An existing mitigation of timing side-channel attacks is insufficient in some circumstances An existing mitigation of timing side-channel attacks is insufficient in some circumstances. This issue is addressed in Network Security Services (NSS) 3.26.1. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.
osv
CVE-2013-1740P4MEDIUMCVSS 5.8≥ 0, < 2:3.15.4-12014-01-18
CVE-2013-1740 [MEDIUM] CVE-2013-1740: The ssl_Do1stHandshake function in sslsecur The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Security Services (NSS) before 3.15.4, when the TLS False Start feature is enabled, allows man-in-the-middle attackers to spoof SSL servers by using an arbitrary X.509 certificate during certain handshake traffic.
osv
CVE-2020-12413P4MEDIUMCVSS 5.9≥ 0, < 2:3.17-12023-02-16
CVE-2020-12413 [MEDIUM] CVE-2020-12413: The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.
osv
CVE-2018-18508P4MEDIUMCVSS 6.5≥ unspecified, < 3.41.1≥ unspecified, < 3.36.72020-10-22
CVE-2018-18508 [MEDIUM] CWE-476 CVE-2018-18508: In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed signature can cause In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed signature can cause a crash due to a null dereference, resulting in a Denial of Service.
nvdosv
CVE-2019-17023P4MEDIUMCVSS 6.5≥ 0, < 2:3.49-12020-01-08
CVE-2019-17023 [MEDIUM] CVE-2019-17023: After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1 After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72.
osv
CVE-2022-22747P4MEDIUMCVSS 6.5≥ 0, < 2:3.35-2ubuntu2.15≥ 0, < 2:3.49.1-1ubuntu1.8+1 more2022-07-07
CVE-2022-22747 [MEDIUM] nss vulnerabilities nss vulnerabilities Tavis Ormandy discovered that NSS incorrectly handled an empty pkcs7 sequence. A remote attacker could possibly use this issue to cause NSS to crash, resulting in a denial of service. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, and Ubuntu 21.10. (CVE-2022-22747) Ronald Crane discovered that NSS incorrectly handled certain memory operations. A remote attacker could use this issue to cause NSS to crash, resulting in
osv
CVE-2011-3640P4HIGHCVSS 7.1≥ 0, < 3.13.1.with.ckbi.1.88-12011-10-28
CVE-2011-3640 [HIGH] CVE-2011-3640: Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allo Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not trea
osv
CVE-2009-2409P4MEDIUMCVSS 5.1≥ 0, < 3.12.3-12009-07-30
CVE-2009-2409 [MEDIUM] CVE-2009-2409: The Network Security Services (NSS) library before 3 The Network Security Services (NSS) library before 3.12.3, as used in Firefox; GnuTLS before 2.6.4 and 2.7.4; OpenSSL 0.9.8 through 0.9.8k; and other products support MD2 with X.509 certificates, which might allow remote attackers to spoof certificates by using MD2 design flaws to generate a hash collision in less than brute-force time. NOTE: the scope of this issue is currently limited because the amount
osv
CVE-2017-5462P4MEDIUMCVSS 5.3≥ 0, < 2:3.26.2-1.12018-06-11
CVE-2017-5462 [MEDIUM] CVE-2017-5462: A flaw in DRBG number generation within the Network Security Services (NSS) library where the internal state V does not correctly carry bits over A flaw in DRBG number generation within the Network Security Services (NSS) library where the internal state V does not correctly carry bits over. The NSS library has been updated to fix this issue to address this issue and Firefox ESR 52.1 has been updated with NSS version 3.28.4. This vulnerability affects Thunde
osv
Mozilla Nss vulnerabilities | cvebase