Known vulnerabilities in nss (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:nss_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 17
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting nss (Debian package) nss (Debian package) is affected by 17 known vulnerabilities: 5 high, 5 medium, 7 low Critical High Medium Low

Vulnerabilities (17)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139009 - Integer overflow
CVE-2026-16389
CWE-190 Low
No
No
2:3.110-1+deb13u4 22.07.2026 SB2026072201
SB2026072302
SB2026073045
#VU126672 - Memory corruption
CVE-2026-6766
CWE-119 Medium
No
No
2:3.110-1+deb13u2 21.04.2026 SB2026042145
SB20260422179
SB20260422180
and 30 more
#VU126659 - Improper input validation
CVE-2026-6767
CWE-20 Low
No
No
2:3.110-1+deb13u2 21.04.2026 SB2026042145
SB20260422179
SB20260422180
and 30 more
#VU126660 - Out-of-bounds read
CVE-2026-6772
CWE-125 Medium
No
No
2:3.110-1+deb13u2 21.04.2026 SB2026042145
SB20260422179
SB20260422180
and 31 more
#VU123207 - Integer overflow
CVE-2026-2781
CWE-190 Low
No
No
2:3.87.1-1+deb12u2, 2:3.110-1+deb13u1 24.02.2026 SB2026022446
SB2026022526
SB2026022527
and 43 more
#VU94622 - Double Free
CVE-2024-6609
CWE-415 Low
No
No
2:3.87.1-1+deb12u1 21.07.2024 SB2024070955
SB2024072101
SB2024072102
and 8 more
#VU93896 - Memory corruption
CVE-2024-6602
CWE-119 High
No
No
2:3.87.1-1+deb12u1 09.07.2024 SB2024070955
SB2024070975
SB2024071077
and 30 more
#VU85709 - Unchecked Return Value
CVE-2024-0743
CWE-252 High
No
No
2:3.87.1-1+deb12u1 23.01.2024 SB2024012340
SB2024012537
SB2024012538
and 52 more
#VU72250 - Out-of-bounds write
CVE-2023-0767
CWE-787 Medium
No
No
2:3.61-1+deb11u3 15.02.2023 SB2023021549
SB2023021551
SB2023021552
and 84 more
#VU59379 - Improper input validation
CVE-2022-22747
CWE-20 Low
No
No
2:3.42.1-1+deb10u5, 2:3.61-1+deb11u2 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 36 more
#VU58477 - Heap-based Buffer Overflow
CVE-2021-43527
CWE-122 High
No
No
2:3.42.1-1+deb10u4, 2:3.61-1+deb11u1 01.12.2021 SB2021120123
SB2021120124
SB2021120201
and 66 more
#VU47197 - Heap-based Buffer Overflow
CVE-2019-17006
CWE-122 High
No
No
2:3.42.1-1+deb10u3 30.09.2020 SB2019090221
SB2020093089
SB2020062437
and 19 more
#VU29460 - Cryptographic Issues
CVE-2020-12402
CWE-310 Low
No
No
2:3.42.1-1+deb10u3 02.07.2020 SB2020070208
SB2020071322
SB2020071401
and 23 more
#VU28522 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-12399
CWE-362 Medium
No
No
2:3.42.1-1+deb10u3 02.06.2020 SB2020060214
SB2020060215
SB2020060216
and 15 more
#VU24061 - Selection of Less-Secure Algorithm During Negotiat
CVE-2019-17023
CWE-757 Low
No
No
2:3.42.1-1+deb10u3 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 13 more
#VU23467 - Improper input validation
CVE-2019-17007
CWE-20 Medium
No
No
2:3.42.1-1+deb10u2 09.12.2019 SB2019112801
SB2019120912
SB2019120913
and 4 more
#VU23050 - Out-of-bounds write
CVE-2019-11745
CWE-787 High
No
No
2:3.42.1-1+deb10u2 28.11.2019 SB2019112801
SB2019112802
SB2019120312
and 29 more