Vulnerability Database
Blog
FAQ
Docs
RHSA-2019:1951
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2019:1951
Import Source
https://security.access.redhat.com/data/osv/RHSA-2019:1951.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2019:1951
Related
CVE-2018-18508
CVE-2019-11719
CVE-2019-11727
CVE-2019-11729
CVE-2019-17007
Published
2024-09-16T02:36:00Z
Modified
2024-11-22T13:21:23Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: nss and nspr security, bug fix, and enhancement update
Details
References
https://access.redhat.com/errata/RHSA-2019:1951
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1671310
https://bugzilla.redhat.com/show_bug.cgi?id=1685325
https://bugzilla.redhat.com/show_bug.cgi?id=1719629
https://bugzilla.redhat.com/show_bug.cgi?id=1719630
https://bugzilla.redhat.com/show_bug.cgi?id=1722373
https://bugzilla.redhat.com/show_bug.cgi?id=1722374
https://bugzilla.redhat.com/show_bug.cgi?id=1725059
https://bugzilla.redhat.com/show_bug.cgi?id=1725110
https://bugzilla.redhat.com/show_bug.cgi?id=1725115
https://bugzilla.redhat.com/show_bug.cgi?id=1725116
https://bugzilla.redhat.com/show_bug.cgi?id=1728259
https://bugzilla.redhat.com/show_bug.cgi?id=1728260
https://bugzilla.redhat.com/show_bug.cgi?id=1728261
https://bugzilla.redhat.com/show_bug.cgi?id=1728436
https://bugzilla.redhat.com/show_bug.cgi?id=1728437
https://bugzilla.redhat.com/show_bug.cgi?id=1730988
https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_1951.json
https://access.redhat.com/security/cve/CVE-2018-18508
https://www.cve.org/CVERecord?id=CVE-2018-18508
https://nvd.nist.gov/vuln/detail/CVE-2018-18508
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.41.1_release_notes
https://access.redhat.com/security/cve/CVE-2019-11719
https://www.cve.org/CVERecord?id=CVE-2019-11719
https://nvd.nist.gov/vuln/detail/CVE-2019-11719
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11719
https://access.redhat.com/security/cve/CVE-2019-11727
https://www.cve.org/CVERecord?id=CVE-2019-11727
https://nvd.nist.gov/vuln/detail/CVE-2019-11727
https://www.mozilla.org/en-US/security/advisories/mfsa2019-21/#CVE-2019-11727
https://access.redhat.com/security/cve/CVE-2019-11729
https://www.cve.org/CVERecord?id=CVE-2019-11729
https://nvd.nist.gov/vuln/detail/CVE-2019-11729
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11729
https://access.redhat.com/security/cve/CVE-2019-17007
https://bugzilla.redhat.com/show_bug.cgi?id=1703979
https://www.cve.org/CVERecord?id=CVE-2019-17007
https://nvd.nist.gov/vuln/detail/CVE-2019-17007
Affected packages
Red Hat:enterprise_linux:8::appstream
/
nspr
Package
Name
nspr
Purl
pkg:rpm/redhat/nspr
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.21.0-2.el8_0
Red Hat:enterprise_linux:8::appstream
/
nspr-debuginfo
Package
Name
nspr-debuginfo
Purl
pkg:rpm/redhat/nspr-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.21.0-2.el8_0
Red Hat:enterprise_linux:8::appstream
/
nspr-debugsource
Package
Name
nspr-debugsource
Purl
pkg:rpm/redhat/nspr-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.21.0-2.el8_0
Red Hat:enterprise_linux:8::appstream
/
nspr-devel
Package
Name
nspr-devel
Purl
pkg:rpm/redhat/nspr-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.21.0-2.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss
Package
Name
nss
Purl
pkg:rpm/redhat/nss
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-debuginfo
Package
Name
nss-debuginfo
Purl
pkg:rpm/redhat/nss-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-debugsource
Package
Name
nss-debugsource
Purl
pkg:rpm/redhat/nss-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-devel
Package
Name
nss-devel
Purl
pkg:rpm/redhat/nss-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-softokn
Package
Name
nss-softokn
Purl
pkg:rpm/redhat/nss-softokn
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-debuginfo
Package
Name
nss-softokn-debuginfo
Purl
pkg:rpm/redhat/nss-softokn-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-devel
Package
Name
nss-softokn-devel
Purl
pkg:rpm/redhat/nss-softokn-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-freebl
Package
Name
nss-softokn-freebl
Purl
pkg:rpm/redhat/nss-softokn-freebl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-freebl-debuginfo
Package
Name
nss-softokn-freebl-debuginfo
Purl
pkg:rpm/redhat/nss-softokn-freebl-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-freebl-devel
Package
Name
nss-softokn-freebl-devel
Purl
pkg:rpm/redhat/nss-softokn-freebl-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-sysinit
Package
Name
nss-sysinit
Purl
pkg:rpm/redhat/nss-sysinit
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-sysinit-debuginfo
Package
Name
nss-sysinit-debuginfo
Purl
pkg:rpm/redhat/nss-sysinit-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-tools
Package
Name
nss-tools
Purl
pkg:rpm/redhat/nss-tools
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-tools-debuginfo
Package
Name
nss-tools-debuginfo
Purl
pkg:rpm/redhat/nss-tools-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-util
Package
Name
nss-util
Purl
pkg:rpm/redhat/nss-util
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-util-debuginfo
Package
Name
nss-util-debuginfo
Purl
pkg:rpm/redhat/nss-util-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
Red Hat:enterprise_linux:8::appstream
/
nss-util-devel
Package
Name
nss-util-devel
Purl
pkg:rpm/redhat/nss-util-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.44.0-7.el8_0
RHSA-2019:1951 - OSV