Количество 42
Количество 42
openSUSE-SU-2020:0955-1
Security update for mozilla-nss
openSUSE-SU-2020:0953-1
Security update for mozilla-nss
SUSE-SU-2020:1850-1
Security update for mozilla-nss
GHSA-p7qx-fg8r-mfq9
During RSA key generation, bignum implementations used a variation of the Binary Extended Euclidean Algorithm which entailed significantly input-dependent flow. This allowed an attacker able to perform electromagnetic-based side channel attacks to record traces leading to the recovery of the secret primes. *Note:* An unmodified Firefox browser does not generate RSA keys in normal operation and is not affected, but products built on top of it might. This vulnerability affects Firefox < 78.
BDU:2020-04504
Уязвимость набора библиотек NSS (Network Security Services), связанная с недостатками используемых криптографических алгоритмов, позволяющая нарушителю получить доступ к конфиденциальным данным
CVE-2019-17023
After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72.
CVE-2019-17023
After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72.
CVE-2019-17023
After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72.
CVE-2019-17023
After a HelloRetryRequest has been sent, the client may negotiate a lo ...
CVE-2019-11756
Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71.
CVE-2019-11756
Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71.
CVE-2019-11756
Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71.
CVE-2019-11756
Improper refcounting of soft token session objects could cause a use-a ...
GHSA-v78f-65qq-96m8
Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71.
GHSA-86rq-87v9-7ppc
After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72.
BDU:2020-01970
Уязвимость расширения HelloRetryRequest браузера Firefox, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01795
Уязвимость компонента перерасчета объектов сеанса веб-браузера Firefox, связанная с обращение к освобожденному участку памяти, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным, вызвать отказ в обслуживании и оказать воздействие на целостность данных
openSUSE-SU-2020:1017-1
Security update for MozillaFirefox
openSUSE-SU-2020:0983-1
Security update for MozillaFirefox
SUSE-SU-2020:1898-1
Security update for MozillaFirefox
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
openSUSE-SU-2020:0955-1 Security update for mozilla-nss | 0% Низкий | больше 5 лет назад | ||
openSUSE-SU-2020:0953-1 Security update for mozilla-nss | 0% Низкий | больше 5 лет назад | ||
SUSE-SU-2020:1850-1 Security update for mozilla-nss | 0% Низкий | больше 5 лет назад | ||
GHSA-p7qx-fg8r-mfq9 During RSA key generation, bignum implementations used a variation of the Binary Extended Euclidean Algorithm which entailed significantly input-dependent flow. This allowed an attacker able to perform electromagnetic-based side channel attacks to record traces leading to the recovery of the secret primes. *Note:* An unmodified Firefox browser does not generate RSA keys in normal operation and is not affected, but products built on top of it might. This vulnerability affects Firefox < 78. | 0% Низкий | больше 3 лет назад | ||
BDU:2020-04504 Уязвимость набора библиотек NSS (Network Security Services), связанная с недостатками используемых криптографических алгоритмов, позволяющая нарушителю получить доступ к конфиденциальным данным | CVSS3: 4.4 | 0% Низкий | больше 5 лет назад | |
CVE-2019-17023 After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72. | CVSS3: 6.5 | 1% Низкий | почти 6 лет назад | |
CVE-2019-17023 After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72. | CVSS3: 5.3 | 1% Низкий | почти 6 лет назад | |
CVE-2019-17023 After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72. | CVSS3: 6.5 | 1% Низкий | почти 6 лет назад | |
CVE-2019-17023 After a HelloRetryRequest has been sent, the client may negotiate a lo ... | CVSS3: 6.5 | 1% Низкий | почти 6 лет назад | |
CVE-2019-11756 Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71. | CVSS3: 8.8 | 0% Низкий | почти 6 лет назад | |
CVE-2019-11756 Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71. | CVSS3: 7.1 | 0% Низкий | около 6 лет назад | |
CVE-2019-11756 Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71. | CVSS3: 8.8 | 0% Низкий | почти 6 лет назад | |
CVE-2019-11756 Improper refcounting of soft token session objects could cause a use-a ... | CVSS3: 8.8 | 0% Низкий | почти 6 лет назад | |
GHSA-v78f-65qq-96m8 Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71. | 0% Низкий | больше 3 лет назад | ||
GHSA-86rq-87v9-7ppc After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. If the client gets into this state, incoming Application Data records will be ignored. This vulnerability affects Firefox < 72. | CVSS3: 6.5 | 1% Низкий | больше 3 лет назад | |
BDU:2020-01970 Уязвимость расширения HelloRetryRequest браузера Firefox, позволяющая нарушителю оказать воздействие на целостность данных | CVSS3: 6.5 | 1% Низкий | около 6 лет назад | |
BDU:2020-01795 Уязвимость компонента перерасчета объектов сеанса веб-браузера Firefox, связанная с обращение к освобожденному участку памяти, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным, вызвать отказ в обслуживании и оказать воздействие на целостность данных | CVSS3: 8.8 | 0% Низкий | около 6 лет назад | |
openSUSE-SU-2020:1017-1 Security update for MozillaFirefox | больше 5 лет назад | |||
openSUSE-SU-2020:0983-1 Security update for MozillaFirefox | больше 5 лет назад | |||
SUSE-SU-2020:1898-1 Security update for MozillaFirefox | больше 5 лет назад |
Уязвимостей на страницу