Oval Definition:oval:org.opensuse.security:def:60722
Revision Date:2020-12-01Version:1
Title:Security update for mozilla-nspr, mozilla-nss (Important)
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:

mozilla-nss was updated to version 3.53.1

- CVE-2020-12402: Fixed a potential side channel attack during RSA key generation (bsc#1173032). - CVE-2020-12399: Fixed a timing attack on DSA signature generation (bsc#1171978). - CVE-2019-17006: Added length checks for cryptographic primitives (bsc#1159819). - Fixed various FIPS issues in libfreebl3 which were causing segfaults in the test suite of chrony (bsc#1168669). - Fixed an issue where Firefox tab was crashing (bsc#1170908).

Release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53_release_notes

mozilla-nspr to version 4.25
Family:unixClass:patch
Status:Reference(s):1012382
1022727
1027519
1028842
1051150
1052984
1061107
1062063
1063026
1063034
1063035
1063037
1063038
1063039
1063040
1063041
1065600
1066644
1070500
1071459
1071460
1078292
1082023
1082863
1083244
1084536
1085042
1091107
1094508
1094825
1096547
1099597
1099999
1100000
1100001
1102517
1102715
1102870
1103275
1103276
1103279
1103676
1105292
1105392
1105536
1106016
1106095
1106263
1106293
1106509
1106511
1107735
1108399
1108498
1108818
1109333
1110711
1110837
1111014
1118159
1120657
1121826
1121872
1122053
1122825
1124170
1128382
1128453
1128783
1129729
1132654
1132852
1133719
1134495
1134589
1136085
1136569
1137377
1137817
1138124
1138187
1138489
1138967
1139750
1140512
1140663
1142032
1142521
1142686
1143310
1157298
1158785
1158787
1158788
1158789
1158790
1158791
1158792
1158793
1158795
1159723
1159729
1159819
1160467
1160468
1160917
1164825
1167890
1168669
1168930
1169746
1170415
1170908
1171928
1171978
1172031
1172225
1173022
1173377
1173378
1173380
1174633
1174635
1174638
1175228
1175306
1175721
1175749
1176011
1176069
1176235
1176253
1176278
1176381
1176382
1176423
1176482
1176721
1176722
1176725
1176816
1176896
1176990
1177027
1177086
1177121
1177165
1177206
1177226
1177410
1177411
1177511
1177513
1177725
1177766
1177816
1178123
1178588
1178622
1178782
CVE-2015-3448
CVE-2017-12176
CVE-2017-12177
CVE-2017-12178
CVE-2017-12179
CVE-2017-12180
CVE-2017-12181
CVE-2017-12182
CVE-2017-12183
CVE-2017-12184
CVE-2017-12185
CVE-2017-12186
CVE-2017-12187
CVE-2017-13721
CVE-2017-13723
CVE-2017-16548
CVE-2017-17051
CVE-2017-17433
CVE-2017-17434
CVE-2017-18204
CVE-2018-1000223
CVE-2018-10938
CVE-2018-13093
CVE-2018-13094
CVE-2018-13095
CVE-2018-14617
CVE-2018-15468
CVE-2018-15469
CVE-2018-15470
CVE-2018-15572
CVE-2018-16276
CVE-2018-17182
CVE-2018-17963
CVE-2018-18386
CVE-2018-3646
CVE-2018-6554
CVE-2018-6555
CVE-2018-7480
CVE-2018-7757
CVE-2018-9363
CVE-2018-9516
CVE-2019-0221
CVE-2019-12418
CVE-2019-1348
CVE-2019-1349
CVE-2019-1350
CVE-2019-1351
CVE-2019-1352
CVE-2019-1353
CVE-2019-1354
CVE-2019-1387
CVE-2019-14896
CVE-2019-14897
CVE-2019-17006
CVE-2019-17563
CVE-2019-17569
CVE-2019-19063
CVE-2019-19604
CVE-2019-20807
CVE-2019-6133
CVE-2019-9735
CVE-2020-0404
CVE-2020-0427
CVE-2020-0431
CVE-2020-0432
CVE-2020-12352
CVE-2020-12399
CVE-2020-12402
CVE-2020-14345
CVE-2020-14346
CVE-2020-14347
CVE-2020-14351
CVE-2020-14381
CVE-2020-14390
CVE-2020-15563
CVE-2020-15565
CVE-2020-15567
CVE-2020-25212
CVE-2020-25284
CVE-2020-25641
CVE-2020-25643
CVE-2020-25645
CVE-2020-25656
CVE-2020-25668
CVE-2020-25705
CVE-2020-26088
CVE-2020-26950
CVE-2020-5260
CVE-2020-8694
CVE-2020-9484
SUSE-SU-2017:3047-1
SUSE-SU-2018:0118-1
SUSE-SU-2019:2219-1
SUSE-SU-2019:3311-1
SUSE-SU-2020:0992-1
SUSE-SU-2020:1498-1
SUSE-SU-2020:1550-1
SUSE-SU-2020:1839-1
SUSE-SU-2020:2331-1
SUSE-SU-2020:3331-1
SUSE-SU-2020:3503-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • exiv2-0.26-lp150.5.6 is installed
  • OR exiv2-lang-0.26-lp150.5.6 is installed
  • OR libexiv2-26-0.26-lp150.5.6 is installed
  • OR libexiv2-26-32bit-0.26-lp150.5.6 is installed
  • OR libexiv2-devel-0.26-lp150.5.6 is installed
  • OR libexiv2-doc-0.26-lp150.5.6 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND dosbox-0.74.3-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • xorg-x11-server-7.6_1.18.3-76.15 is installed
  • OR xorg-x11-server-extra-7.6_1.18.3-76.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • tomcat-8.0.53-29.27 is installed
  • OR tomcat-admin-webapps-8.0.53-29.27 is installed
  • OR tomcat-docs-webapp-8.0.53-29.27 is installed
  • OR tomcat-el-3_0-api-8.0.53-29.27 is installed
  • OR tomcat-javadoc-8.0.53-29.27 is installed
  • OR tomcat-jsp-2_3-api-8.0.53-29.27 is installed
  • OR tomcat-lib-8.0.53-29.27 is installed
  • OR tomcat-servlet-3_1-api-8.0.53-29.27 is installed
  • OR tomcat-webapps-8.0.53-29.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • xen-4.9.4_08-3.66 is installed
  • OR xen-doc-html-4.9.4_08-3.66 is installed
  • OR xen-libs-4.9.4_08-3.66 is installed
  • OR xen-libs-32bit-4.9.4_08-3.66 is installed
  • OR xen-tools-4.9.4_08-3.66 is installed
  • OR xen-tools-domU-4.9.4_08-3.66 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • git-2.12.3-27.22 is installed
  • OR git-core-2.12.3-27.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libSoundTouch0-1.7.1-5.3 is installed
  • OR soundtouch-1.7.1-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cpio-2.11-36.3 is installed
  • OR cpio-lang-2.11-36.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • libxerces-c-3_1-3.1.1-13.3 is installed
  • OR libxerces-c-3_1-32bit-3.1.1-13.3 is installed
  • OR xerces-c-3.1.1-13.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libfreebl3-3.53.1-58.48 is installed
  • OR libfreebl3-32bit-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-3.53.1-58.48 is installed
  • OR libsoftokn3-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-32bit-3.53.1-58.48 is installed
  • OR mozilla-nspr-4.25-19.15 is installed
  • OR mozilla-nspr-32bit-4.25-19.15 is installed
  • OR mozilla-nspr-devel-4.25-19.15 is installed
  • OR mozilla-nss-3.53.1-58.48 is installed
  • OR mozilla-nss-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-devel-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-tools-3.53.1-58.48 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-4.15 is installed
  • OR crowbar-core-5.0+git.1565280360.01fed6905-3.26 is installed
  • OR crowbar-core-branding-upstream-5.0+git.1565280360.01fed6905-3.26 is installed
  • OR crowbar-ha-5.0+git.1562069707.e2de18c-3.20 is installed
  • OR crowbar-openstack-5.0+git.1565270683.ea6e63d87-4.28 is installed
  • OR crowbar-ui-1.2.0+git.1563181545.65360af5-3.9 is installed
  • OR documentation-suse-openstack-cloud-deployment-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20190805-1.20 is installed
  • OR galera-python-clustercheck-0.0+git.1562242499.36b8b64-4.6 is installed
  • OR grafana-monasca-ui-drilldown-1.8.1~dev39-3.9 is installed
  • OR openstack-cinder-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-api-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-backup-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-doc-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-scheduler-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-volume-11.2.3~dev7-3.18 is installed
  • OR openstack-glance-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-api-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-doc-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-registry-15.0.3~dev2-3.9 is installed
  • OR openstack-heat-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cfn-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cloudwatch-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-doc-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-engine-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-plugin-heat_docker-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-test-9.0.8~dev11-3.21 is installed
  • OR openstack-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR openstack-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR openstack-ironic-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-api-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-conductor-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-doc-9.1.8~dev7-3.21 is installed
  • OR openstack-keystone-12.0.4~dev2-5.22 is installed
  • OR openstack-keystone-doc-12.0.4~dev2-5.22 is installed
  • OR openstack-manila-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-api-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-data-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-doc-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-scheduler-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-share-5.1.1~dev2-3.18 is installed
  • OR openstack-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR openstack-monasca-api-2.2.2~dev1-3.15 is installed
  • OR openstack-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR openstack-monasca-persister-java-1.7.1~a0~dev2-3.3 is installed
  • OR openstack-murano-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-api-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-doc-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-engine-4.0.2~dev2-3.9 is installed
  • OR openstack-neutron-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-dhcp-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-doc-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR openstack-neutron-ha-tool-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-l3-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-agent-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-doc-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-linuxbridge-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-macvtap-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metadata-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metering-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-openvswitch-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-server-11.0.9~dev42-3.21 is installed
  • OR openstack-nova-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-cells-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-compute-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-conductor-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-console-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-doc-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-placement-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-scheduler-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-octavia-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-amphora-agent-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-api-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-health-manager-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-housekeeping-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-worker-1.0.6~dev2-4.18 is installed
  • OR python-cinder-11.2.3~dev7-3.18 is installed
  • OR python-glance-15.0.3~dev2-3.9 is installed
  • OR python-heat-9.0.8~dev11-3.21 is installed
  • OR python-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR python-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR python-ironic-9.1.8~dev7-3.21 is installed
  • OR python-keystone-12.0.4~dev2-5.22 is installed
  • OR python-manila-5.1.1~dev2-3.18 is installed
  • OR python-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR python-monasca-api-2.2.2~dev1-3.15 is installed
  • OR python-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR python-murano-4.0.2~dev2-3.9 is installed
  • OR python-neutron-11.0.9~dev42-3.21 is installed
  • OR python-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR python-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR python-nova-16.1.9~dev4-3.26 is installed
  • OR python-octavia-1.0.6~dev2-4.18 is installed
  • OR python-oslo.db-4.25.2-3.6 is installed
  • OR python-osprofiler-1.11.1-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND nodejs6-6.17.0-11.27 is installed
  • BACK