Oval Definition:oval:org.opensuse.security:def:64028
Revision Date:2020-12-01Version:1
Title:Security update for mozilla-nspr, mozilla-nss (Moderate)
Description:

This update for mozilla-nspr, mozilla-nss fixes the following issues:

mozilla-nss was updated to NSS 3.47.1:

Security issues fixed:

- CVE-2019-17006: Added length checks for cryptographic primitives (bsc#1159819). - CVE-2019-11745: EncryptUpdate should use maxout, not block size (bsc#1158527). - CVE-2019-11727: Fixed vulnerability sign CertificateVerify with PKCS#1 v1.5 signatures issue (bsc#1141322).

mozilla-nspr was updated to version 4.23:

- Whitespace in C files was cleaned up and no longer uses tab characters for indenting.
Family:unixClass:patch
Status:Reference(s):1012382
1050242
1051510
1053043
1056787
1058115
1061840
1064802
1065600
1065729
1066129
1068546
1071995
1075020
1082387
1083647
1085535
1093389
1099658
1103992
1104353
1104427
1111666
1111696
1113722
1115688
1117114
1117158
1117561
1118139
1120091
1120423
1120566
1120902
1122560
1124503
1126206
1126356
1127616
1128432
1130699
1131673
1133190
1133612
1133616
1134090
1134671
1134730
1134738
1134743
1134806
1134936
1134945
1134946
1134947
1134948
1134949
1134950
1134951
1134952
1134953
1134972
1134974
1134975
1134980
1134981
1134983
1134987
1134989
1134990
1134994
1134995
1134998
1134999
1135018
1135021
1135024
1135026
1135027
1135028
1135029
1135031
1135033
1135034
1135035
1135036
1135037
1135038
1135039
1135041
1135042
1135044
1135045
1135046
1135047
1135049
1135051
1135052
1135053
1135055
1135056
1135058
1135153
1135542
1135556
1135642
1135661
1136188
1136206
1136215
1136345
1136347
1136348
1136353
1136424
1136428
1136430
1136432
1136434
1136435
1136438
1136439
1136456
1136460
1136461
1136469
1136477
1136478
1136498
1136573
1136586
1136598
1136881
1136922
1136935
1136978
1136990
1137151
1137152
1137153
1137162
1137201
1137224
1137232
1137233
1137236
1137372
1137429
1137444
1137586
1137614
1137615
1137739
1137752
1137995
1137996
1137998
1137999
1138000
1138002
1138003
1138005
1138006
1138007
1138008
1138009
1138010
1138011
1138012
1138013
1138014
1138015
1138016
1138017
1138018
1138019
1138291
1138293
1138336
1138374
1138375
1139406
1141322
1141430
1141431
1141432
1141689
1146657
1152082
1154402
1156431
1157001
1158527
1159819
1160663
1168029
1168030
1168031
1168032
1168669
1169746
1170908
1171550
1171978
1172798
1172846
1173022
1173510
1173972
1174753
1174817
1174910
1174913
1175168
CVE-2019-10067
CVE-2019-10086
CVE-2019-10124
CVE-2019-11477
CVE-2019-11478
CVE-2019-11479
CVE-2019-11487
CVE-2019-11745
CVE-2019-12248
CVE-2019-12380
CVE-2019-12382
CVE-2019-12456
CVE-2019-12497
CVE-2019-12746
CVE-2019-12818
CVE-2019-12819
CVE-2019-13457
CVE-2019-13458
CVE-2019-16276
CVE-2019-16375
CVE-2019-17006
CVE-2019-17596
CVE-2019-18179
CVE-2019-18180
CVE-2019-3846
CVE-2019-9752
CVE-2019-9892
CVE-2020-12399
CVE-2020-12402
CVE-2020-13249
CVE-2020-13844
CVE-2020-14361
CVE-2020-14362
CVE-2020-1765
CVE-2020-1766
CVE-2020-1769
CVE-2020-1770
CVE-2020-1771
CVE-2020-1772
CVE-2020-1773
CVE-2020-2752
CVE-2020-2760
CVE-2020-2812
CVE-2020-2814
CVE-2020-4067
openSUSE-SU-2019:1571-1
openSUSE-SU-2019:2058-1
openSUSE-SU-2019:2522-1
openSUSE-SU-2020:0870-1
openSUSE-SU-2020:0937-1
openSUSE-SU-2020:1475-1
SUSE-SU-2020:0088-1
SUSE-SU-2020:1839-1
SUSE-SU-2020:3263-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • kernel-debug-4.12.14-lp151.28.7 is installed
  • OR kernel-debug-base-4.12.14-lp151.28.7 is installed
  • OR kernel-debug-devel-4.12.14-lp151.28.7 is installed
  • OR kernel-default-4.12.14-lp151.28.7 is installed
  • OR kernel-default-base-4.12.14-lp151.28.7 is installed
  • OR kernel-default-devel-4.12.14-lp151.28.7 is installed
  • OR kernel-devel-4.12.14-lp151.28.7 is installed
  • OR kernel-docs-4.12.14-lp151.28.7 is installed
  • OR kernel-docs-html-4.12.14-lp151.28.7 is installed
  • OR kernel-kvmsmall-4.12.14-lp151.28.7 is installed
  • OR kernel-kvmsmall-base-4.12.14-lp151.28.7 is installed
  • OR kernel-kvmsmall-devel-4.12.14-lp151.28.7 is installed
  • OR kernel-macros-4.12.14-lp151.28.7 is installed
  • OR kernel-obs-build-4.12.14-lp151.28.7 is installed
  • OR kernel-obs-qa-4.12.14-lp151.28.7 is installed
  • OR kernel-source-4.12.14-lp151.28.7 is installed
  • OR kernel-source-vanilla-4.12.14-lp151.28.7 is installed
  • OR kernel-syms-4.12.14-lp151.28.7 is installed
  • OR kernel-vanilla-4.12.14-lp151.28.7 is installed
  • OR kernel-vanilla-base-4.12.14-lp151.28.7 is installed
  • OR kernel-vanilla-devel-4.12.14-lp151.28.7 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • coturn-4.5.1.3-lp152.2.3 is installed
  • OR coturn-devel-4.5.1.3-lp152.2.3 is installed
  • OR coturn-utils-4.5.1.3-lp152.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libfreebl3-3.47.1-58.34 is installed
  • OR libfreebl3-32bit-3.47.1-58.34 is installed
  • OR libfreebl3-hmac-3.47.1-58.34 is installed
  • OR libfreebl3-hmac-32bit-3.47.1-58.34 is installed
  • OR libsoftokn3-3.47.1-58.34 is installed
  • OR libsoftokn3-32bit-3.47.1-58.34 is installed
  • OR libsoftokn3-hmac-3.47.1-58.34 is installed
  • OR libsoftokn3-hmac-32bit-3.47.1-58.34 is installed
  • OR mozilla-nspr-4.23-19.12 is installed
  • OR mozilla-nspr-32bit-4.23-19.12 is installed
  • OR mozilla-nss-3.47.1-58.34 is installed
  • OR mozilla-nss-32bit-3.47.1-58.34 is installed
  • OR mozilla-nss-certs-3.47.1-58.34 is installed
  • OR mozilla-nss-certs-32bit-3.47.1-58.34 is installed
  • OR mozilla-nss-sysinit-3.47.1-58.34 is installed
  • OR mozilla-nss-sysinit-32bit-3.47.1-58.34 is installed
  • OR mozilla-nss-tools-3.47.1-58.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • xorg-x11-server-1.19.6-4.11 is installed
  • OR xorg-x11-server-extra-1.19.6-4.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • libfreebl3-3.53.1-58.48 is installed
  • OR libfreebl3-32bit-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-3.53.1-58.48 is installed
  • OR libsoftokn3-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-32bit-3.53.1-58.48 is installed
  • OR mozilla-nspr-4.25-19.15 is installed
  • OR mozilla-nspr-32bit-4.25-19.15 is installed
  • OR mozilla-nspr-devel-4.25-19.15 is installed
  • OR mozilla-nss-3.53.1-58.48 is installed
  • OR mozilla-nss-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-devel-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-tools-3.53.1-58.48 is installed
  • BACK