Known vulnerabilities in nspr (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:nspr_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 15
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting nspr (Red Hat package) nspr (Red Hat package) is affected by 15 known vulnerabilities: 3 high, 6 medium, 6 low Critical High Medium Low

Vulnerabilities (15)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82285 - Resource exhaustion
CVE-2016-1978
CWE-400 Medium
No
No
4.11.0-1.el5_11 20.10.2023 SB2016050808
SB2016042119
SB2016042506
#VU47910 - Allocation of Resources Without Limits or Throttling
CVE-2020-25648
CWE-770 Medium
No
No
4.32.0-1.el8_4 21.10.2020 SB2020102132
SB2020102609
SB2021050605
and 18 more
#VU47197 - Heap-based Buffer Overflow
CVE-2019-17006
CWE-122 High
No
No
4.25.0-2.el7_9, 4.25.0-2.el8_2 30.09.2020 SB2019090221
SB2020093089
SB2020062437
and 19 more
#VU46019 - Cryptographic Issues
CVE-2020-6829
CWE-310 Low
No
No
4.25.0-2.el7_9 25.08.2020 SB2020082520
SB2020072974
SB2020072975
and 18 more
#VU45799 - Out-of-bounds read
CVE-2020-12403
CWE-125 Medium
No
No
4.25.0-2.el7_9 20.08.2020 SB2020082004
SB2020082005
SB2020072966
and 17 more
#VU45798 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-12401
CWE-327 Low
No
No
4.25.0-2.el7_9 20.08.2020 SB2020082004
SB2020082005
SB2020072965
and 19 more
#VU45797 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-12400
CWE-327 Low
No
No
4.25.0-2.el7_9 20.08.2020 SB2020082004
SB2020082005
SB2020072964
and 19 more
#VU29460 - Cryptographic Issues
CVE-2020-12402
CWE-310 Low
No
No
4.25.0-2.el7_9, 4.25.0-2.el8_2 02.07.2020 SB2020070208
SB2020071322
SB2020071401
and 23 more
#VU26105 - NULL Pointer Dereference
CVE-2018-18508
CWE-476 Low
No
No
4.21.0-2.el8_0 17.03.2020 SB2020031706
SB2020011201
SB2021022218
and 3 more
#VU24061 - Selection of Less-Secure Algorithm During Negotiat
CVE-2019-17023
CWE-757 Low
No
No
4.25.0-2.el7_9, 4.25.0-2.el8_2 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 13 more
#VU23562 - Improper input validation
CVE-2019-11729
CWE-20 Medium
No
No
4.21.0-2.el8_0 12.12.2019 SB2019062813
SB2019121210
SB2020031903
and 11 more
#VU23369 - Use After Free
CVE-2019-11756
CWE-416 High
No
No
4.25.0-2.el7_9, 4.25.0-2.el8_2 03.12.2019 SB2019120312
SB2019120314
SB2019121002
and 16 more
#VU33037 - Out-of-bounds read
CVE-2019-11719
CWE-125 Medium
No
No
4.21.0-2.el8_0, 4.25.0-2.el7_9 23.07.2019 SB2019072322
SB2019082322
SB2019073024
and 17 more
#VU47195 - Improper Certificate Validation
CVE-2019-11727
CWE-295 Medium
No
No
4.21.0-2.el8_0, 4.25.0-2.el7_9 23.07.2019 SB2020093089
SB2020011201
SB2021043017
and 8 more
#VU33635 - Improper input validation
CVE-2016-1979
CWE-20 High
No
No
4.11.0-1.el5_11 13.03.2016 SB2016032406
SB2016042506