Your submission was sent successfully! Close

CVE-2018-12404

Published: 12 December 2018

A cached side channel attack during handshakes using RSA encryption could allow for the decryption of encrypted content. This is a variant of the Adaptive Chosen Ciphertext attack (AKA Bleichenbacher attack) and affects all NSS versions prior to NSS 3.41.

Priority

Medium

CVSS 3 base score: 5.9

Status

Package Release Status
nss
Launchpad, Ubuntu, Debian
bionic
Released (2:3.35-2ubuntu2.1)
cosmic
Released (2:3.36.1-1ubuntu1.1)
precise
Released (2:3.28.4-0ubuntu0.12.04.2)
trusty
Released (2:3.28.4-0ubuntu0.14.04.4)
upstream
Released (3.36.6,3.40.1,2:3.41-1)
xenial
Released (2:3.28.4-0ubuntu0.16.04.4)