Skip to main content

Vendor/product archive

mozilla / nss CVEs

Beta · best-effort

6 CVEs tagged to mozilla / nss3 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2023-4421

Published Dec 12, 2023

The NSS code used for checking PKCS#1 v1.5 was leaking information useful in mounting Bleichenbacher-like attacks. Both the overall correctness of the padding as well as the lengt…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-12403

Published May 27, 2021

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fi…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1