Univention Bugzilla – Bug 57152
nss: Multiple issues (5.0)
Last modified: 2024-03-27 13:56:44 CET
New Debian nss 2:3.42.1-1+deb10u8 fixes: This update addresses the following issues: 2:3.42.1-1+deb10u8 (Sun, 10 Mar 2024 15:45:51 +0100) * Non-maintainer upload by the LTS Security Team. * Add upstream patch for CVE-2024-0743, integer underflow can lead to potentially exploitable crash. * Add upstream patch for CVE-2023-5388, timing attack against RSA decryption in TLS.
--- mirror/ftp/pool/main/n/nss/nss_3.42.1-1+deb10u7.dsc +++ apt/ucs_5.0-0-errata5.0-7/source/nss_3.42.1-1+deb10u8.dsc @@ -1,3 +1,11 @@ +2:3.42.1-1+deb10u8 [Sun, 10 Mar 2024 15:45:51 +0100] Tobias Frost <tobi@debian.org>: + + * Non-maintainer upload by the LTS Security Team. + * Add upstream patch for CVE-2024-0743, integer underflow can lead to + potentially exploitable crash. + * Add upstream patch for CVE-2023-5388, timing attack against RSA + decryption in TLS. (Closes: #1056284) + 2:3.42.1-1+deb10u7 [Sat, 28 Oct 2023 11:58:15 +0100] Sean Whitton <spwhitton@spwhitton.name>: * Non-maintainer upload by the LTS Security Team. <http://piuparts.knut.univention.de/5.0-7/#8284105454641829722>
OK: bug OK: yaml OK: announce_errata OK: patch OK: piuparts [5.0-7] 130f0f7935 Bug #57152: nss 2:3.42.1-1+deb10u8 doc/errata/staging/nss.yaml | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) [5.0-7] 91877dc6f5 Bug #57152: nss 2:3.42.1-1+deb10u8 doc/errata/staging/nss.yaml | 11 +++++------ 1 file changed, 5 insertions(+), 6 deletions(-) [5.0-7] 1b9e76b5ae Bug #57152: nss 2:3.42.1-1+deb10u8 doc/errata/staging/nss.yaml | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+)
<https://errata.software-univention.de/#/?erratum=5.0x1002>