Логотип exploitDog
bind:"CVE-2015-2730" OR bind:"CVE-2015-2721"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2015-2730" OR bind:"CVE-2015-2721"

Количество 16

Количество 16

oracle-oval логотип

ELSA-2015-1664

около 10 лет назад

ELSA-2015-1664: nss security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozill ...

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2015-2730

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2015-2730

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-2730

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2015-2730

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozi ...

CVSS2: 4.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1269-1

около 10 лет назад

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1268-2

около 10 лет назад

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1268-1

около 10 лет назад

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

EPSS: Низкий
github логотип

GHSA-fhwj-6xh8-h4rw

больше 3 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1449-1

около 10 лет назад

Security update for MozillaFirefox, mozilla-nss

EPSS: Низкий
github логотип

GHSA-85fg-8m94-wc2q

больше 3 лет назад

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1699

почти 10 лет назад

ELSA-2015-1699: nss-softokn security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2015-1664

ELSA-2015-1664: nss security, bug fix, and enhancement update (MODERATE)

около 10 лет назад
ubuntu логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
1%
Низкий
около 10 лет назад
redhat логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 5.1
1%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
1%
Низкий
около 10 лет назад
debian логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozill ...

CVSS2: 4.3
1%
Низкий
около 10 лет назад
ubuntu логотип
CVE-2015-2730

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

CVSS2: 4.3
0%
Низкий
около 10 лет назад
redhat логотип
CVE-2015-2730

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

CVSS2: 4.3
0%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-2730

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

CVSS2: 4.3
0%
Низкий
около 10 лет назад
debian логотип
CVE-2015-2730

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozi ...

CVSS2: 4.3
0%
Низкий
около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1269-1

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1268-2

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1268-1

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

около 10 лет назад
github логотип
GHSA-fhwj-6xh8-h4rw

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

1%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2015:1449-1

Security update for MozillaFirefox, mozilla-nss

около 10 лет назад
github логотип
GHSA-85fg-8m94-wc2q

Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

0%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2015-1699

ELSA-2015-1699: nss-softokn security update (MODERATE)

почти 10 лет назад

Уязвимостей на страницу