Out-of-bounds read in Mozilla NSS - CVE-2020-12403

 

Out-of-bounds read in Mozilla NSS - CVE-2020-12403

Published: August 20, 2020


Vulnerability identifier: #VU45799
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-12403
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain access to potentially sensitive information.

The vulnerability exists due to a boundary condition when processing data encrypted with CHACHA20-POLY1305 ciphersuite. A remote attacker can trick the victim to connect to a malicious server and gain access to sensitive information.


Affected software

Mozilla NSS
Gentoo Linux
Amazon Linux AMI
F5OS
CentOS
Red Hat Enterprise Linux for IBM System z (Structure A)
Red Hat Enterprise Linux for Power 9
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Server - AUS
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for x86_64 - Extended Update Support
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power, big endian - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for x86_64
Ubuntu
openEuler
Ansible Automation Platform
nss (Alpine package)
nss-softokn (Red Hat package)
nss (Red Hat package)
Red Hat Enterprise Linux Server for x86_64 - Update Services for SAP Solutions
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
libnss3 (Ubuntu package)
nss-util (Red Hat package)
nss-devel
nss-util
nss-util-devel
nss-debuginfo
nss-softokn
nss-help
nss-softokn-devel
nss-debugsource
nss
nspr (Red Hat package)
Traffix SDC
Red Hat OpenShift Container Platform
Data Computing Appliance (DCA)
Dell EMC VxRail Appliance

How to mitigate CVE-2020-12403

Install updates from vendor's website.

Mozilla NSS - update to 3.55
Ansible Automation Platform - addressed in versions 1.0, 1.1, 1.2.4
nss-softokn (Red Hat package) - addressed in versions 3.28.3-10.el7_4, 3.36.0-7.el7_6, 3.44.0-9.el7_7, 3.53.1-6.el7_9
nss (Red Hat package) - addressed in versions 3.36.0-9.el7_6, 3.53.1-3.el7_9, 3.53.1-17.el8_3
Data Computing Appliance (DCA) - addressed in versions Firmware tool 3H00, 4.2.1.0
libnss3 (Ubuntu package) - addressed in versions 2:3.28.4-0ubuntu0.12.04.11, 2:3.28.4-0ubuntu0.16.04.14, 2:3.35-2ubuntu2.12, 2:3.49.1-1ubuntu1.5
nss-util (Red Hat package) - update to 3.53.1-1.el7_9
nss-devel - update to 3.54.0-6
nss-util - update to 3.54.0-6
nss-util-devel - update to 3.54.0-6
nss-debuginfo - update to 3.54.0-6
nss-softokn - update to 3.54.0-6
nss-help - update to 3.54.0-6
nss-softokn-devel - update to 3.54.0-6
nss-debugsource - update to 3.54.0-6
nss - update to 3.54.0-6
Red Hat OpenShift Container Platform - update to 4.3.40
nspr (Red Hat package) - update to 4.25.0-2.el7_9
Dell EMC VxRail Appliance - update to 7.0.240

External References

Related Security Bulletins