Логотип exploitDog
bind:"CVE-2018-12404" OR bind:"CVE-2018-0495"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2018-12404" OR bind:"CVE-2018-0495"

Количество 28

Количество 28

oracle-oval логотип

ELSA-2019-2237

почти 6 лет назад

ELSA-2019-2237: nss, nss-softokn, nss-util, and nspr security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:4236-2

около 6 лет назад

Security update for MozillaFirefox, mozilla-nspr and mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:4236-1

больше 6 лет назад

Security update for MozillaFirefox, mozilla-nspr and mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:4235-1

больше 6 лет назад

Security update for MozillaFirefox, mozilla-nspr and mozilla-nss

EPSS: Низкий
ubuntu логотип

CVE-2018-12404

около 6 лет назад

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
EPSS: Средний
redhat логотип

CVE-2018-12404

больше 6 лет назад

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
EPSS: Средний
nvd логотип

CVE-2018-12404

около 6 лет назад

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
EPSS: Средний
debian логотип

CVE-2018-12404

около 6 лет назад

A cached side channel attack during handshakes using RSA encryption co ...

CVSS3: 5.9
EPSS: Средний
ubuntu логотип

CVE-2018-0495

около 7 лет назад

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

CVSS3: 4.7
EPSS: Низкий
redhat логотип

CVE-2018-0495

около 7 лет назад

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

CVSS3: 5.1
EPSS: Низкий
nvd логотип

CVE-2018-0495

около 7 лет назад

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

CVSS3: 4.7
EPSS: Низкий
debian логотип

CVE-2018-0495

около 7 лет назад

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache s ...

CVSS3: 4.7
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:0183-1

около 6 лет назад

Security update for mozilla-nss

EPSS: Средний
github логотип

GHSA-54r4-cg3v-pxw7

около 3 лет назад

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
EPSS: Средний
fstec логотип

BDU:2019-01763

почти 7 лет назад

Уязвимость набора библиотек NSS (Network Security Services), связанная с ошибками криптографических преобразований, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.9
EPSS: Средний
fstec логотип

BDU:2019-00775

больше 6 лет назад

Уязвимость набора библиотек Network Security Services, связаная с возможностью понизить используемую версию протокола TLS, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 5.1
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:4283-1

больше 6 лет назад

Security update for mozilla-nspr and mozilla-nss

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2178-1

почти 7 лет назад

Security update for libgcrypt

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2122-1

почти 7 лет назад

Security update for libgcrypt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2452-2

больше 6 лет назад

Security update for libgcrypt

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2019-2237

ELSA-2019-2237: nss, nss-softokn, nss-util, and nspr security, bug fix, and enhancement update (MODERATE)

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2018:4236-2

Security update for MozillaFirefox, mozilla-nspr and mozilla-nss

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2018:4236-1

Security update for MozillaFirefox, mozilla-nspr and mozilla-nss

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2018:4235-1

Security update for MozillaFirefox, mozilla-nspr and mozilla-nss

больше 6 лет назад
ubuntu логотип
CVE-2018-12404

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
42%
Средний
около 6 лет назад
redhat логотип
CVE-2018-12404

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
42%
Средний
больше 6 лет назад
nvd логотип
CVE-2018-12404

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
42%
Средний
около 6 лет назад
debian логотип
CVE-2018-12404

A cached side channel attack during handshakes using RSA encryption co ...

CVSS3: 5.9
42%
Средний
около 6 лет назад
ubuntu логотип
CVE-2018-0495

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

CVSS3: 4.7
0%
Низкий
около 7 лет назад
redhat логотип
CVE-2018-0495

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

CVSS3: 5.1
0%
Низкий
около 7 лет назад
nvd логотип
CVE-2018-0495

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache side-channel attack on ECDSA signatures that can be mitigated through the use of blinding during the signing process in the _gcry_ecc_ecdsa_sign function in cipher/ecc-ecdsa.c, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.

CVSS3: 4.7
0%
Низкий
около 7 лет назад
debian логотип
CVE-2018-0495

Libgcrypt before 1.7.10 and 1.8.x before 1.8.3 allows a memory-cache s ...

CVSS3: 4.7
0%
Низкий
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:0183-1

Security update for mozilla-nss

42%
Средний
около 6 лет назад
github логотип
GHSA-54r4-cg3v-pxw7

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

CVSS3: 5.9
42%
Средний
около 3 лет назад
fstec логотип
BDU:2019-01763

Уязвимость набора библиотек NSS (Network Security Services), связанная с ошибками криптографических преобразований, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.9
42%
Средний
почти 7 лет назад
fstec логотип
BDU:2019-00775

Уязвимость набора библиотек Network Security Services, связаная с возможностью понизить используемую версию протокола TLS, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 5.1
42%
Средний
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2018:4283-1

Security update for mozilla-nspr and mozilla-nss

0%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2178-1

Security update for libgcrypt

0%
Низкий
почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2122-1

Security update for libgcrypt

0%
Низкий
почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2452-2

Security update for libgcrypt

0%
Низкий
больше 6 лет назад

Уязвимостей на страницу