Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2021:3572

Опубликовано: 01 окт. 2021
Источник: rocky
Оценка: Moderate

Описание

Moderate: nss and nspr security, bug fix, and enhancement update

For more information visit https://errata.rockylinux.org/RLSA-2021:3572

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
nspri6861.el8_4nspr-4.32.0-1.el8_4.i686.rpm
nsprx86_641.el8_4nspr-4.32.0-1.el8_4.x86_64.rpm
nspr-develi6861.el8_4nspr-devel-4.32.0-1.el8_4.i686.rpm
nspr-develx86_641.el8_4nspr-devel-4.32.0-1.el8_4.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 5 лет назад

A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker to send multiple CCS messages, causing a denial of service for servers compiled with the NSS library. The highest threat from this vulnerability is to system availability. This flaw affects NSS versions before 3.58.

CVSS3: 7.5
redhat
почти 5 лет назад

A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker to send multiple CCS messages, causing a denial of service for servers compiled with the NSS library. The highest threat from this vulnerability is to system availability. This flaw affects NSS versions before 3.58.

CVSS3: 7.5
nvd
почти 5 лет назад

A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker to send multiple CCS messages, causing a denial of service for servers compiled with the NSS library. The highest threat from this vulnerability is to system availability. This flaw affects NSS versions before 3.58.

CVSS3: 7.5
debian
почти 5 лет назад

A flaw was found in the way NSS handled CCS (ChangeCipherSpec) message ...

CVSS3: 7.5
github
около 3 лет назад

A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker to send multiple CCS messages, causing a denial of service for servers compiled with the NSS library. The highest threat from this vulnerability is to system availability. This flaw affects NSS versions before 3.58.