Total vulnerabilities in the database
A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker to send multiple CCS messages, causing a denial of service for servers compiled with the NSS library. The highest threat from this vulnerability is to system availability. This flaw affects NSS versions before 3.58.
Software | From | Fixed in |
---|---|---|
mozilla / network_security_services | - | 3.58 |
redhat / enterprise_linux | 7.0 | 7.0.x |
redhat / enterprise_linux | 8.0 | 8.0.x |
fedoraproject / fedora | 31 | 31.x |
fedoraproject / fedora | 32 | 32.x |
fedoraproject / fedora | 33 | 33.x |
oracle / communications_offline_mediation_controller | 12.0.0.3.0 | 12.0.0.3.0.x |
oracle / communications_pricing_design_center | 12.0.0.3.0 | 12.0.0.3.0.x |
oracle / jd_edwards_enterpriseone_tools | - | 9.2.6.0 |