RHSA-2020:3280
Advisory lineage Upstream: 5 Downstream: 0
Published: 16 Sept 2024, 04:32
Last modified:22 Nov 2025, 12:06
Vulnerability Summary
Overall Risk (default)
medium
32/100 CVSS Score
8.1 HIGH
3.0 (osv_red_hat)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
16 Sept 2024, 04:32
Published
Vulnerability first disclosed
22 Nov 2025, 12:06
Last Modified
Vulnerability information updated
Description
Red Hat Security Advisory: nss and nspr security, bug fix, and enhancement update
CVSS Metrics
- v3.0•HIGH•Score: 8.1CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•nspr
< 0:4.25.0-2.el8_2
- redhat•nspr-debuginfo
< 0:4.25.0-2.el8_2
- redhat•nspr-debugsource
< 0:4.25.0-2.el8_2
- redhat•nspr-devel
< 0:4.25.0-2.el8_2
- redhat•nss
< 0:3.53.1-11.el8_2
- redhat•nss-debuginfo
< 0:3.53.1-11.el8_2
- redhat•nss-debugsource
< 0:3.53.1-11.el8_2
- redhat•nss-devel
< 0:3.53.1-11.el8_2
- redhat•nss-softokn
< 0:3.53.1-11.el8_2
- redhat•nss-softokn-debuginfo
< 0:3.53.1-11.el8_2
- redhat•nss-softokn-devel
< 0:3.53.1-11.el8_2
- redhat•nss-softokn-freebl
< 0:3.53.1-11.el8_2
- redhat•nss-softokn-freebl-debuginfo
< 0:3.53.1-11.el8_2
- redhat•nss-softokn-freebl-devel
< 0:3.53.1-11.el8_2
- redhat•nss-sysinit
< 0:3.53.1-11.el8_2
- redhat•nss-sysinit-debuginfo
< 0:3.53.1-11.el8_2
- redhat•nss-tools
< 0:3.53.1-11.el8_2
- redhat•nss-tools-debuginfo
< 0:3.53.1-11.el8_2
- redhat•nss-util
< 0:3.53.1-11.el8_2
- redhat•nss-util-debuginfo
< 0:3.53.1-11.el8_2
- redhat•nss-util-devel
< 0:3.53.1-11.el8_2
References (37)
- https://access.redhat.com/errata/RHSA-2020:3280
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=1663187
- https://bugzilla.redhat.com/show_bug.cgi?id=1691454
- https://bugzilla.redhat.com/show_bug.cgi?id=1711375
- https://bugzilla.redhat.com/show_bug.cgi?id=1724250
- https://bugzilla.redhat.com/show_bug.cgi?id=1750921
- https://bugzilla.redhat.com/show_bug.cgi?id=1774835
- https://bugzilla.redhat.com/show_bug.cgi?id=1775916
- https://bugzilla.redhat.com/show_bug.cgi?id=1791225
- https://bugzilla.redhat.com/show_bug.cgi?id=1809637
- https://bugzilla.redhat.com/show_bug.cgi?id=1825270
- https://bugzilla.redhat.com/show_bug.cgi?id=1826231
- https://bugzilla.redhat.com/show_bug.cgi?id=1854564
- https://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_3280.json
- https://access.redhat.com/security/cve/CVE-2019-11756
- https://www.cve.org/CVERecord?id=CVE-2019-11756
- https://nvd.nist.gov/vuln/detail/CVE-2019-11756
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.47_release_notes
- https://access.redhat.com/security/cve/CVE-2019-17006
- https://www.cve.org/CVERecord?id=CVE-2019-17006
- https://nvd.nist.gov/vuln/detail/CVE-2019-17006
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.46_release_notes
- https://access.redhat.com/security/cve/CVE-2019-17023
- https://www.cve.org/CVERecord?id=CVE-2019-17023
- https://nvd.nist.gov/vuln/detail/CVE-2019-17023
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.49_release_notes
- https://access.redhat.com/security/cve/CVE-2020-12399
- https://bugzilla.redhat.com/show_bug.cgi?id=1826177
- https://www.cve.org/CVERecord?id=CVE-2020-12399
- https://nvd.nist.gov/vuln/detail/CVE-2020-12399
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.44.4_release_notes
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.52.1_release_notes
- https://access.redhat.com/security/cve/CVE-2020-12402
- https://www.cve.org/CVERecord?id=CVE-2020-12402
- https://nvd.nist.gov/vuln/detail/CVE-2020-12402
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.53.1_release_notes