[CLSA-2025:1739975489] nss-softokn: Fix of CVE-2023-5388
Type:
security
Severity:
Moderate
Release date:
2025-02-19 14:31:35 UTC
Description:
- CVE-2023-5388: fix timing attack against RSA decryption - Bug 1784253: avoid processing unexpected inputs by checking for m_exptmod base sign - Bug 1911912: avoid misuse of ctype(3) functions
Updated packages:
  • nss-softokn-3.90.0-6.el7_9.tuxcare.els1.i686.rpm
    sha:f9f43968a5f9eed26c68205ffef19d5cc8f55e3cc0571442b3b3a55e9000778b
  • nss-softokn-3.90.0-6.el7_9.tuxcare.els1.x86_64.rpm
    sha:65c2267134dadc54faf595e089306fea0e042fe861f31928d3a5c6d2adeba95f
  • nss-softokn-devel-3.90.0-6.el7_9.tuxcare.els1.i686.rpm
    sha:9bf32ce73ab4031cfde0aef8d7606b1554c84b67291aa25f54cfa32147dc78ef
  • nss-softokn-devel-3.90.0-6.el7_9.tuxcare.els1.x86_64.rpm
    sha:7ce0abae7cda0903c20cc6a72bbcf37a1fe9c0517c7b37ee727322bd5c3bf1c7
  • nss-softokn-freebl-3.90.0-6.el7_9.tuxcare.els1.i686.rpm
    sha:fbcf9e1009f406220b93f4d75b8bcf2cef47cf62bd67c0da2ebc406686d5c921
  • nss-softokn-freebl-3.90.0-6.el7_9.tuxcare.els1.x86_64.rpm
    sha:ba7bd413e289d0ecd937075f534d963f732e1df7c20fba45f1ff49ce98927618
  • nss-softokn-freebl-devel-3.90.0-6.el7_9.tuxcare.els1.i686.rpm
    sha:67c48ef6c4f8ac114037b73efba1a1ad29403d02e014cbb09b0c3738224e1882
  • nss-softokn-freebl-devel-3.90.0-6.el7_9.tuxcare.els1.x86_64.rpm
    sha:cb7a29dc357f6d3d5e69d5652e154edd1d1a3a73f415d693416a39dda09c1efa
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.