Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2021:3939-1

Опубликовано: 06 дек. 2021
Источник: suse-cvrf

Описание

Security update for mozilla-nss

This update for mozilla-nss fixes the following issues:

Update to version 3.68.1:

  • CVE-2021-43527: Fixed a Heap overflow in NSS when verifying DER-encoded DSA or RSA-PSS signatures (bsc#1193170).

Список пакетов

HPE Helion OpenStack 8
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
Image SLES12-SP4-Azure-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-EC2-HVM-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-GCE-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-Azure
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-Azure-BYOS
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-Azure-LI-BYOS-Production
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-Azure-VLI-BYOS-Production
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-EC2-HVM
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-EC2-HVM-BYOS
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-GCE
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP4-SAP-GCE-BYOS
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-Azure-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-Azure-Basic-On-Demand
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-Azure-HPC-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-Azure-HPC-On-Demand
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-Azure-SAP-BYOS
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-Azure-SAP-On-Demand
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-Azure-Standard-On-Demand
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-EC2-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-EC2-ECS-On-Demand
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-EC2-On-Demand
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-EC2-SAP-BYOS
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-EC2-SAP-On-Demand
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-GCE-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-GCE-On-Demand
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-GCE-SAP-BYOS
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-GCE-SAP-On-Demand
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-OCI-BYOS-BYOS
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-OCI-BYOS-SAP-BYOS
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production
libfreebl3-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
SUSE Linux Enterprise Server 12 SP2-BCL
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Server 12 SP3-BCL
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Server 12 SP3-LTSS
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Server 12 SP4-LTSS
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Server 12 SP5
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE Linux Enterprise Software Development Kit 12 SP5
mozilla-nss-devel-3.68.1-58.57.1
SUSE OpenStack Cloud 8
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE OpenStack Cloud 9
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE OpenStack Cloud Crowbar 8
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1
SUSE OpenStack Cloud Crowbar 9
libfreebl3-3.68.1-58.57.1
libfreebl3-32bit-3.68.1-58.57.1
libfreebl3-hmac-3.68.1-58.57.1
libfreebl3-hmac-32bit-3.68.1-58.57.1
libsoftokn3-3.68.1-58.57.1
libsoftokn3-32bit-3.68.1-58.57.1
libsoftokn3-hmac-3.68.1-58.57.1
libsoftokn3-hmac-32bit-3.68.1-58.57.1
mozilla-nss-3.68.1-58.57.1
mozilla-nss-32bit-3.68.1-58.57.1
mozilla-nss-certs-3.68.1-58.57.1
mozilla-nss-certs-32bit-3.68.1-58.57.1
mozilla-nss-devel-3.68.1-58.57.1
mozilla-nss-sysinit-3.68.1-58.57.1
mozilla-nss-sysinit-32bit-3.68.1-58.57.1
mozilla-nss-tools-3.68.1-58.57.1

Описание

NSS (Network Security Services) versions prior to 3.73 or 3.68.1 ESR are vulnerable to a heap overflow when handling DER-encoded DSA or RSA-PSS signatures. Applications using NSS for handling signatures encoded within CMS, S/MIME, PKCS \#7, or PKCS \#12 are likely to be impacted. Applications using NSS for certificate validation or other TLS, X.509, OCSP or CRL functionality may be impacted, depending on how they configure NSS. *Note: This vulnerability does NOT impact Mozilla Firefox.* However, email clients and PDF viewers that use NSS for signature verification, such as Thunderbird, LibreOffice, Evolution and Evince are believed to be impacted. This vulnerability affects NSS < 3.73 and NSS < 3.68.1.


Затронутые продукты
HPE Helion OpenStack 8:libfreebl3-3.68.1-58.57.1
HPE Helion OpenStack 8:libfreebl3-32bit-3.68.1-58.57.1
HPE Helion OpenStack 8:libfreebl3-hmac-3.68.1-58.57.1
HPE Helion OpenStack 8:libfreebl3-hmac-32bit-3.68.1-58.57.1

Ссылки
Уязвимость SUSE-SU-2021:3939-1