cbcvebase.

Mozilla Nss vulnerabilities

77 known vulnerabilities affecting mozilla/nss.

Total CVEs
77
CISA KEV
0
Public exploits
6
Exploited in wild
1
Severity breakdown
CRITICAL11HIGH25MEDIUM37LOW4

Vulnerabilities

Page 4 of 4
CVE-2013-0791P4MEDIUMCVSS 5.0≥ 0, < 2:3.14.3-12013-04-03
CVE-2013-0791 [MEDIUM] CVE-2013-0791: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20 The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory cor
osv
CVE-2013-1739P4MEDIUMCVSS 5.0≥ 0, < 2:3.15.2-12013-10-22
CVE-2013-1739 [MEDIUM] CVE-2013-1739: Mozilla Network Security Services (NSS) before 3 Mozilla Network Security Services (NSS) before 3.15.2 does not ensure that data structures are initialized before read operations, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a decryption failure.
osv
CVE-2014-1491P4MEDIUMCVSS 4.3≥ 0, < 2:3.15.4-12014-02-06
CVE-2014-1491 [MEDIUM] CVE-2014-1491: Mozilla Network Security Services (NSS) before 3 Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does not properly restrict public values in Diffie-Hellman key exchanges, which makes it easier for remote attackers to bypass cryptographic protection mechanisms in ticket handling by leveraging use of a certain value.
osv
CVE-2016-9574P4MEDIUMCVSS 5.9≥ 0, < 2:3.25-12018-07-19
CVE-2016-9574 [MEDIUM] CVE-2016-9574: nss before version 3 nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA.
osv
CVE-2020-6829P4MEDIUMCVSS 5.3≥ 0, < 2:3.55-12020-10-28
CVE-2020-6829 [MEDIUM] CVE-2020-6829: When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial information about the nonce use When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial information about the nonce used during signature generation. Given an electro-magnetic trace of a few signature generations, the private key could have been computed. This vulnerability affec
osv
CVE-2013-1620P4LOWCVSS 2.6≥ 0, < 2:3.14.3-12013-02-08
CVE-2013-1620 [LOW] CVE-2013-1620: The TLS implementation in Mozilla Network Security Services (NSS) does not properly consider timing side-channel attacks on a noncompliant MAC check o The TLS implementation in Mozilla Network Security Services (NSS) does not properly consider timing side-channel attacks on a noncompliant MAC check operation during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statisti
osv
CVE-2012-0441P4MEDIUMCVSS 5.0≥ 0, < 3.13.4-12012-06-05
CVE-2012-0441 [MEDIUM] CVE-2012-0441: The ASN The ASN.1 decoder in the QuickDER decoder in Mozilla Network Security Services (NSS) before 3.13.4, as used in Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10, allows remote attackers to cause a denial of service (application crash) via a zero-length item, as demonstrated by (1) a zero-length basic constraint or (2) a zero-length field in an OCSP res
osv
CVE-2015-2730P4MEDIUMCVSS 4.3≥ 0, < 2:3.19.1-12015-07-06
CVE-2015-2730 [MEDIUM] CVE-2015-2730: Mozilla Network Security Services (NSS) before 3 Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.
osv
CVE-2015-2721P4MEDIUMCVSS 4.3≥ 0, < 2:3.19.2-0ubuntu0.14.04.12015-07-09
CVE-2015-2721 [MEDIUM] nss vulnerabilities nss vulnerabilities Karthikeyan Bhargavan discovered that NSS incorrectly handled state transitions for the TLS state machine. If a remote attacker were able to perform a machine-in-the-middle attack, this flaw could be exploited to skip the ServerKeyExchange message and remove the forward-secrecy property. (CVE-2015-2721) Watson Ladd discovered that NSS incorrectly handled Elliptical Curve Cryptography (ECC) multiplication. A remote attacker could po
osv
CVE-2014-1492P4MEDIUMCVSS 4.3≥ 0, < 2:3.16-12014-03-25
CVE-2014-1492 [MEDIUM] CVE-2014-1492: The cert_TestHostName function in lib/certdb/certdb The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate.
osv
CVE-2018-0495P4MEDIUMCVSS 4.7≥ 0, < 2:3.28.4-0ubuntu0.14.04.4≥ 0, < 2:3.28.4-0ubuntu0.16.04.4+1 more2019-01-09
CVE-2018-0495 [MEDIUM] nss vulnerabilities nss vulnerabilities Keegan Ryan discovered that NSS incorrectly handled ECDSA key generation. A local attacker could possibly use this issue to perform a cache-timing attack and recover private ECDSA keys. (CVE-2018-0495) It was discovered that NSS incorrectly handled certain v2-compatible ClientHello messages. A remote attacker could possibly use this issue to perform a replay attack. (CVE-2018-12384) It was discovered that NSS incorrectly handled c
osv
CVE-2020-12401P4MEDIUMCVSS 4.7≥ 0, < 2:3.55-12020-10-08
CVE-2020-12401 [MEDIUM] CVE-2020-12401: During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in varia During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This vulnerability affects Firefox < 80 and Firefox for Android < 80.
osv
CVE-2020-12400P4MEDIUMCVSS 4.7≥ 0, < 2:3.28.4-0ubuntu0.14.04.5+esm7≥ 0, < 2:3.28.4-0ubuntu0.16.04.13+2 more2020-08-10
CVE-2020-12400 [MEDIUM] nss vulnerabilities nss vulnerabilities It was discovered that NSS incorrectly handled certain signatures. An attacker could possibly use this issue to expose sensitive information. (CVE-2020-12400, CVE-2020-12401, CVE-2020-6829)
osv
CVE-2010-3170P4MEDIUMCVSS 4.3≥ 0, < 3.12.8-12010-10-21
CVE-2010-3170 [MEDIUM] CVE-2010-3170: Mozilla Firefox before 3 Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 recognize a wildcard IP address in the subject's Common Name field of an X.509 certificate, which might allow man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
osv
CVE-2023-6135P4MEDIUMCVSS 4.3≥ 0, < 2:3.95-12023-12-19
CVE-2023-6135 [MEDIUM] CVE-2023-6135: Multiple NSS NIST curves were susceptible to a side-channel attack known as "Minerva" Multiple NSS NIST curves were susceptible to a side-channel attack known as "Minerva". This attack could potentially allow an attacker to recover the private key. This vulnerability affects Firefox < 121.
osv
CVE-2020-12399P4MEDIUMCVSS 4.4≥ 0, < 2:3.53-12020-07-09
CVE-2020-12399 [MEDIUM] CVE-2020-12399: NSS has shown timing differences when performing DSA signatures, which was exploitable and could eventually leak private keys NSS has shown timing differences when performing DSA signatures, which was exploitable and could eventually leak private keys. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.
osv
CVE-2020-12402P4MEDIUMCVSS 4.4≥ 0, < 2:3.53.1-12020-07-09
CVE-2020-12402 [MEDIUM] CVE-2020-12402: During RSA key generation, bignum implementations used a variation of the Binary Extended Euclidean Algorithm which entailed significantly input-depen During RSA key generation, bignum implementations used a variation of the Binary Extended Euclidean Algorithm which entailed significantly input-dependent flow. This allowed an attacker able to perform electromagnetic-based side channel attacks to record traces leading to the recovery of the secret primes. *
osv
Mozilla Nss vulnerabilities | cvebase