Revision Date: | 2020-06-18 | Version: | 1 |
Title: | Security update for mozilla-nspr, mozilla-nss (Important) |
Description: |
This update for mozilla-nspr, mozilla-nss fixes the following issues:
mozilla-nss was updated to version 3.53
- CVE-2020-12399: Fixed a timing attack on DSA signature generation (bsc#1171978). - CVE-2019-17006: Added length checks for cryptographic primitives (bsc#1159819). Release notes: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53_release_notes
mozilla-nspr to version 4.25
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1159819 1169746 1171978 CVE-2019-17006 CVE-2020-12399
|
Platform(s): | SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
| Product(s): | |