Логотип exploitDog
bind:"CVE-2020-6829" OR bind:"CVE-2020-12400" OR bind:"CVE-2020-12403"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-6829" OR bind:"CVE-2020-12400" OR bind:"CVE-2020-12403"

Количество 24

Количество 24

debian логотип

CVE-2020-12400

больше 5 лет назад

When converting coordinates from projective to affine, the modular inv ...

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-9h25-47mw-52hh

больше 3 лет назад

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-38vr-4p57-8h9g

больше 3 лет назад

When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
EPSS: Низкий
fstec логотип

BDU:2020-03960

больше 5 лет назад

Уязвимость функции модульной инверсии набора библиотек NSS (Network Security Services), позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2020-12400

When converting coordinates from projective to affine, the modular inv ...

CVSS3: 4.7
0%
Низкий
больше 5 лет назад
github логотип
GHSA-9h25-47mw-52hh

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-38vr-4p57-8h9g

When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-03960

Уязвимость функции модульной инверсии набора библиотек NSS (Network Security Services), позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
0%
Низкий
больше 5 лет назад

Уязвимостей на страницу