CVE-2021-43527

Aliases:RHSA-2021:4903RHSA-2021:4904RHSA-2021:4907RHSA-2021:4909RHSA-2021:4919RHSA-2021:4932RHSA-2021:4933RHSA-2021:4946RHSA-2021:4953RHSA-2021:4954RHSA-2021:4969RHSA-2021:4994RHSA-2021:5006DEBIAN-CVE-2021-43527ALPINE-CVE-2021-43527
Modified
Published: 08 Dec 2021, 00:00
Last modified:04 Aug 2024, 03:55

Vulnerability Summary

Overall Risk (default)
high
70/100
CVSS Score
9.8 CRITICAL
v3.1 (nvd)
EPSS Score
17.56% MEDIUM
18% probability +12.18%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

08 Dec 2021, 00:00
Published
Vulnerability first disclosed
04 Aug 2024, 03:55
Last Modified
Vulnerability information updated

Description

NSS (Network Security Services) versions prior to 3.73 or 3.68.1 ESR are vulnerable to a heap overflow when handling DER-encoded DSA or RSA-PSS signatures. Applications using NSS for handling signatures encoded within CMS, S/MIME, PKCS \#7, or PKCS \#12 are likely to be impacted. Applications using NSS for certificate validation or other TLS, X.509, OCSP or CRL functionality may be impacted, depending on how they configure NSS. *Note: This vulnerability does NOT impact Mozilla Firefox.* However, email clients and PDF viewers that use NSS for signature verification, such as Thunderbird, LibreOffice, Evolution and Evince are believed to be impacted. This vulnerability affects NSS < 3.73 and NSS < 3.68.1.

CVSS Metrics

  • v3.1CRITICALScore: 9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • v2.0HIGHScore: 7.5AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS Trends

Current EPSS score: 17.56% Percentile: 97%

Techniques & Countermeasures

  • CWE-787Out-of-bounds Write

    The product writes data past the end, or before the beginning, of the intended buffer.

Affected Systems

  • alpinenss

    < 3.60-r2 | < 3.73-r0 | < 3.73-r0 | < 3.73-r0 | < 3.73-r0 | < 3.73-r0 | < 3.73-r0

  • debiannss

    < 2:3.61-1+deb11u1 | < 2:3.73-1 | < 2:3.73-1 | < 2:3.73-1

  • mozillanss

    ≥ unspecified, < 3.73 | ≥ unspecified, < 3.68.1 | < 3.73

  • mozillanss_esr

    < 3.68.1

  • netappcloud_backup

    na

  • netappe-series_santricity_os_controller

    ≥ 11.0, ≤ 11.70.1

  • oraclecommunications_cloud_native_core_binding_support_function

    1.11.0

  • oraclecommunications_cloud_native_core_network_repository_function

    1.15.0 | 1.15.1

  • oraclecommunications_cloud_native_core_network_slice_selection_function

    1.8.0

  • oraclecommunications_policy_management

    12.6.0.0.0

  • redhatnss

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.44.0-12.el6_10 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.28.4-18.el7_4 | < 0:3.36.0-10.2.el7_6 | < 0:3.44.0-8.el7_7 | < 0:3.44.0-10.el8_1 | < 0:3.28.4-2.el7_3

  • redhatnss-debuginfo

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.44.0-12.el6_10 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.28.4-18.el7_4 | < 0:3.36.0-10.2.el7_6 | < 0:3.44.0-8.el7_7 | < 0:3.44.0-10.el8_1 | < 0:3.28.4-2.el7_3

  • redhatnss-debugsource

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-devel

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.44.0-12.el6_10 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.28.4-18.el7_4 | < 0:3.36.0-10.2.el7_6 | < 0:3.44.0-8.el7_7 | < 0:3.44.0-10.el8_1 | < 0:3.28.4-2.el7_3

  • redhatnss-pkcs11-devel

    < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.44.0-12.el6_10 | < 0:3.28.4-18.el7_4 | < 0:3.36.0-10.2.el7_6 | < 0:3.44.0-8.el7_7 | < 0:3.28.4-2.el7_3

  • redhatnss-softokn

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-softokn-debuginfo

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-softokn-devel

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-softokn-freebl

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-softokn-freebl-debuginfo

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-softokn-freebl-devel

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-sysinit

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.44.0-12.el6_10 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.28.4-18.el7_4 | < 0:3.36.0-10.2.el7_6 | < 0:3.44.0-8.el7_7 | < 0:3.44.0-10.el8_1 | < 0:3.28.4-2.el7_3

  • redhatnss-sysinit-debuginfo

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-tools

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.67.0-4.el7_9 | < 0:3.44.0-12.el6_10 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.28.4-18.el7_4 | < 0:3.36.0-10.2.el7_6 | < 0:3.44.0-8.el7_7 | < 0:3.44.0-10.el8_1 | < 0:3.28.4-2.el7_3

  • redhatnss-tools-debuginfo

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-util

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-util-debuginfo

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatnss-util-devel

    < 0:3.67.0-7.el8_5 | < 0:3.67.0-7.el8_4 | < 0:3.53.1-12.el8_2 | < 0:3.44.0-10.el8_1

  • redhatredhat-virtualization-host

    < 0:4.4.9-202112061811_8.5

  • redhatredhat-virtualization-host-image-update

    < 0:4.4.9-202112061811_8.5

  • redhatthunderbird

    < 0:91.3.0-3.el8_2 | < 0:91.3.0-3.el8_1

  • redhatthunderbird-debuginfo

    < 0:91.3.0-3.el8_2 | < 0:91.3.0-3.el8_1

  • redhatthunderbird-debugsource

    < 0:91.3.0-3.el8_2 | < 0:91.3.0-3.el8_1

  • starwindsoftwarestarwind_san_\&_nas

    v8r13

  • starwindsoftwarestarwind_virtual_san

    v8r13:14398

References (46)