Логотип exploitDog
bind:CVE-2015-2721
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-2721

Количество 10

Количество 10

ubuntu логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2015-2721

около 10 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozill ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-fhwj-6xh8-h4rw

больше 3 лет назад

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1664

около 10 лет назад

ELSA-2015-1664: nss security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1269-1

около 10 лет назад

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1268-2

около 10 лет назад

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1268-1

около 10 лет назад

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1449-1

около 10 лет назад

Security update for MozillaFirefox, mozilla-nss

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
1%
Низкий
около 10 лет назад
redhat логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 5.1
1%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

CVSS2: 4.3
1%
Низкий
около 10 лет назад
debian логотип
CVE-2015-2721

Mozilla Network Security Services (NSS) before 3.19, as used in Mozill ...

CVSS2: 4.3
1%
Низкий
около 10 лет назад
github логотип
GHSA-fhwj-6xh8-h4rw

Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

1%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2015-1664

ELSA-2015-1664: nss security, bug fix, and enhancement update (MODERATE)

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1269-1

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1268-2

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1268-1

Security update for MozillaFirefox, mozilla-nspr, mozilla-nss

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1449-1

Security update for MozillaFirefox, mozilla-nss

около 10 лет назад

Уязвимостей на страницу