Логотип exploitDog
bind:CVE-2020-12403
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-12403

Количество 12

Количество 12

ubuntu логотип

CVE-2020-12403

больше 4 лет назад

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2020-12403

больше 5 лет назад

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2020-12403

больше 4 лет назад

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
EPSS: Низкий
msrc логотип

CVE-2020-12403

больше 4 лет назад

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20 it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2020-12403

больше 4 лет назад

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS i ...

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-9h25-47mw-52hh

больше 3 лет назад

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
EPSS: Низкий
oracle-oval логотип

ELSA-2021-0538

почти 5 лет назад

ELSA-2021-0538: nss security and bug fix update (MODERATE)

EPSS: Низкий
rocky логотип

RLSA-2021:0538

почти 5 лет назад

Moderate: nss security and bug fix update

EPSS: Низкий
suse-cvrf логотип

SUSE-RU-2021:3116-1

около 4 лет назад

Recommended update for mozilla-nspr, mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-RU-2021:3115-1

около 4 лет назад

Recommended update for mozilla-nspr, mozilla-nss

EPSS: Низкий
suse-cvrf логотип

SUSE-RU-2021:14818-1

около 4 лет назад

Recommended update for mozilla-nspr, mozilla-nss

EPSS: Низкий
oracle-oval логотип

ELSA-2020-4076

около 5 лет назад

ELSA-2020-4076: nss and nspr security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-12403

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
0%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-12403

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 7.4
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-12403

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2020-12403

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20 it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2020-12403

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS i ...

CVSS3: 9.1
0%
Низкий
больше 4 лет назад
github логотип
GHSA-9h25-47mw-52hh

A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly enforcing tag length. The highest threat from this vulnerability is to confidentiality and system availability.

CVSS3: 9.1
0%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2021-0538

ELSA-2021-0538: nss security and bug fix update (MODERATE)

почти 5 лет назад
rocky логотип
RLSA-2021:0538

Moderate: nss security and bug fix update

почти 5 лет назад
suse-cvrf логотип
SUSE-RU-2021:3116-1

Recommended update for mozilla-nspr, mozilla-nss

около 4 лет назад
suse-cvrf логотип
SUSE-RU-2021:3115-1

Recommended update for mozilla-nspr, mozilla-nss

около 4 лет назад
suse-cvrf логотип
SUSE-RU-2021:14818-1

Recommended update for mozilla-nspr, mozilla-nss

около 4 лет назад
oracle-oval логотип
ELSA-2020-4076

ELSA-2020-4076: nss and nspr security, bug fix, and enhancement update (MODERATE)

около 5 лет назад

Уязвимостей на страницу