Known vulnerabilities in nss (Alpine package)

Software CPE: cpe:2.3:o:alpine:nss_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 25
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting nss (Alpine package) nss (Alpine package) is affected by 25 known vulnerabilities: 8 high, 11 medium, 6 low Critical High Medium Low

Vulnerabilities (25)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU47910 - Allocation of Resources Without Limits or Throttling
CVE-2020-25648
CWE-770 Medium
No
No
- 21.10.2020 SB2020102132
SB2020102609
SB2021050605
and 18 more
#VU46019 - Cryptographic Issues
CVE-2020-6829
CWE-310 Low
No
No
- 25.08.2020 SB2020082520
SB2020072974
SB2020072975
and 18 more
#VU45799 - Out-of-bounds read
CVE-2020-12403
CWE-125 Medium
No
No
- 20.08.2020 SB2020082004
SB2020082005
SB2020072966
and 17 more
#VU45798 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-12401
CWE-327 Low
No
No
- 20.08.2020 SB2020082004
SB2020082005
SB2020072965
and 19 more
#VU45797 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-12400
CWE-327 Low
No
No
- 20.08.2020 SB2020082004
SB2020082005
SB2020072964
and 19 more
#VU33989 - Heap-based Buffer Overflow
CVE-2015-7182
CWE-122 High
No
No
3.19.2.1-r0 05.08.2020 SB2015110501
SB2015113006
SB2015110503
and 3 more
#VU33988 - Memory corruption
CVE-2015-7181
CWE-119 High
No
No
3.19.2.1-r0 05.08.2020 SB2015110501
SB2015113005
SB2015110503
and 3 more
#VU29460 - Cryptographic Issues
CVE-2020-12402
CWE-310 Low
No
No
3.53.1-r0 02.07.2020 SB2020070208
SB2020071322
SB2020071401
and 23 more
#VU23050 - Out-of-bounds write
CVE-2019-11745
CWE-787 High
No
No
3.44.3-r0 28.11.2019 SB2019112801
SB2019112802
SB2019120312
and 29 more
#VU16219 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2018-12404
CWE-300 Medium
No
No
3.41-r0 04.12.2018 SB2018120401
SB2018120402
SB2018121303
and 14 more
#VU15735 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2018-12384
CWE-300 Low
No
No
3.36.1-r1 06.11.2018 SB2018110608
SB2018121303
SB2018123004
and 11 more
#VU6339 - Exposure of sensitive information to an unauthorized actor
CVE-2017-5462
CWE-200 Low
No
No
3.23-r1 19.04.2017 SB2017041905
SB2017050201
SB2017050701
and 7 more
#VU6316 - Out-of-bounds write
CVE-2017-5461
CWE-787 High
No
No
3.23-r1 19.04.2017 SB2017041905
SB2017050201
SB2017050701
and 15 more
#VU33810 - Improper input validation
CVE-2016-2834
CWE-20 High
No
No
3.23-r0 13.06.2016 SB2016061301
SB2016062405
SB2023022238
and 1 more
#VU33635 - Improper input validation
CVE-2016-1979
CWE-20 High
No
No
3.19.2.3-r0 13.03.2016 SB2016032406
SB2016042506
#VU32316 - Heap-based Buffer Overflow
CVE-2016-1950
CWE-122 High
No
No
3.19.2.3-r0 13.03.2016 SB2016031303
SB2016032405
SB2016031014
#VU32328 - Cryptographic Issues
CVE-2016-1938
CWE-310 Medium
No
No
3.19.2.1-r1 31.01.2016 SB2016013101
SB2016022505
#VU33638 - Data Handling
CVE-2015-7575
CWE-19 Medium
No
No
3.19.2.1-r1 09.01.2016 SB2016022504
SB2016020909
SB2016020910
and 10 more
#VU33655 - Cryptographic Issues
CVE-2014-1568
CWE-310 Medium
No
No
3.16.2.1-r0 25.09.2014 SB2014092603
SB2014100108
SB2014093019
and 6 more
#VU32555 - Improper input validation
CVE-2014-1492
CWE-20 Medium
No
No
3.13.4-r2 25.03.2014 SB2014032504
SB2014041722
SB2015052705
and 5 more


Showing elements 1 - 20 out of 25