Vulnerability Database
Blog
FAQ
Docs
RHSA-2021:3572
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2021:3572
Import Source
https://security.access.redhat.com/data/osv/RHSA-2021:3572.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2021:3572
Related
CVE-2020-25648
Published
2024-09-16T05:29:04Z
Modified
2024-09-16T05:29:04Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: nss and nspr security, bug fix, and enhancement update
Details
References
https://access.redhat.com/errata/RHSA-2021:3572
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1887319
https://bugzilla.redhat.com/show_bug.cgi?id=1967980
https://bugzilla.redhat.com/show_bug.cgi?id=1976250
https://bugzilla.redhat.com/show_bug.cgi?id=1976253
https://bugzilla.redhat.com/show_bug.cgi?id=1976255
https://bugzilla.redhat.com/show_bug.cgi?id=1976257
https://bugzilla.redhat.com/show_bug.cgi?id=1976258
https://bugzilla.redhat.com/show_bug.cgi?id=1977412
https://bugzilla.redhat.com/show_bug.cgi?id=1978443
https://bugzilla.redhat.com/show_bug.cgi?id=1996774
https://access.redhat.com/security/data/csaf/v2/advisories/2021/rhsa-2021_3572.json
https://access.redhat.com/security/cve/CVE-2020-25648
https://www.cve.org/CVERecord?id=CVE-2020-25648
https://nvd.nist.gov/vuln/detail/CVE-2020-25648
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.58_release_notes
Affected packages
Red Hat:enterprise_linux:8::appstream
/
nspr
Package
Name
nspr
Purl
pkg:rpm/redhat/nspr
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.32.0-1.el8_4
Red Hat:enterprise_linux:8::appstream
/
nspr-debuginfo
Package
Name
nspr-debuginfo
Purl
pkg:rpm/redhat/nspr-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.32.0-1.el8_4
Red Hat:enterprise_linux:8::appstream
/
nspr-debugsource
Package
Name
nspr-debugsource
Purl
pkg:rpm/redhat/nspr-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.32.0-1.el8_4
Red Hat:enterprise_linux:8::appstream
/
nspr-devel
Package
Name
nspr-devel
Purl
pkg:rpm/redhat/nspr-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.32.0-1.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss
Package
Name
nss
Purl
pkg:rpm/redhat/nss
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-debuginfo
Package
Name
nss-debuginfo
Purl
pkg:rpm/redhat/nss-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-debugsource
Package
Name
nss-debugsource
Purl
pkg:rpm/redhat/nss-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-devel
Package
Name
nss-devel
Purl
pkg:rpm/redhat/nss-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-softokn
Package
Name
nss-softokn
Purl
pkg:rpm/redhat/nss-softokn
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-debuginfo
Package
Name
nss-softokn-debuginfo
Purl
pkg:rpm/redhat/nss-softokn-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-devel
Package
Name
nss-softokn-devel
Purl
pkg:rpm/redhat/nss-softokn-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-freebl
Package
Name
nss-softokn-freebl
Purl
pkg:rpm/redhat/nss-softokn-freebl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-freebl-debuginfo
Package
Name
nss-softokn-freebl-debuginfo
Purl
pkg:rpm/redhat/nss-softokn-freebl-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-softokn-freebl-devel
Package
Name
nss-softokn-freebl-devel
Purl
pkg:rpm/redhat/nss-softokn-freebl-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-sysinit
Package
Name
nss-sysinit
Purl
pkg:rpm/redhat/nss-sysinit
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-sysinit-debuginfo
Package
Name
nss-sysinit-debuginfo
Purl
pkg:rpm/redhat/nss-sysinit-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-tools
Package
Name
nss-tools
Purl
pkg:rpm/redhat/nss-tools
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-tools-debuginfo
Package
Name
nss-tools-debuginfo
Purl
pkg:rpm/redhat/nss-tools-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-util
Package
Name
nss-util
Purl
pkg:rpm/redhat/nss-util
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-util-debuginfo
Package
Name
nss-util-debuginfo
Purl
pkg:rpm/redhat/nss-util-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
Red Hat:enterprise_linux:8::appstream
/
nss-util-devel
Package
Name
nss-util-devel
Purl
pkg:rpm/redhat/nss-util-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.67.0-6.el8_4
RHSA-2021:3572 - OSV