CLSA-2025-1739975489

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1739975489.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2025-1739975489
Upstream
Published
2025-02-19T14:31:35Z
Modified
2026-06-01T00:33:17.872974570Z
Summary
nss-softokn: Fix of CVE-2023-5388
Details
  • CVE-2023-5388: fix timing attack against RSA decryption
  • Bug 1784253: avoid processing unexpected inputs by checking for m_exptmod base sign
  • Bug 1911912: avoid misuse of ctype(3) functions
References

Affected packages

TuxCare:CentOS:7 / nss-softokn

Package

Name
nss-softokn
Purl
pkg:rpm/tuxcare/nss-softokn?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.90.0-6.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1739975489.json"

TuxCare:CentOS:7 / nss-softokn-devel

Package

Name
nss-softokn-devel
Purl
pkg:rpm/tuxcare/nss-softokn-devel?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.90.0-6.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1739975489.json"

TuxCare:CentOS:7 / nss-softokn-freebl

Package

Name
nss-softokn-freebl
Purl
pkg:rpm/tuxcare/nss-softokn-freebl?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.90.0-6.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1739975489.json"

TuxCare:CentOS:7 / nss-softokn-freebl-devel

Package

Name
nss-softokn-freebl-devel
Purl
pkg:rpm/tuxcare/nss-softokn-freebl-devel?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.90.0-6.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1739975489.json"