FlawAtlas
Search the atlas
ALSA-2021:4903 Not scored

Critical: nss security update

Network Security Services (NSS) is a set of libraries designed to support the cross-platform development of security-enabled client and server applications. Security Fix(es): * nss: Memory corruption in decodeECorDsaSignature with DSA signatures (and RSA-PSS) (CVE-2021-43527) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Exploit probability Not scored
Published December 1, 2021
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

AlmaLinux:8 nss
AlmaLinux:8 nss-devel
AlmaLinux:8 nss-softokn
AlmaLinux:8 nss-softokn-devel
AlmaLinux:8 nss-softokn-freebl
AlmaLinux:8 nss-softokn-freebl-devel
AlmaLinux:8 nss-sysinit
AlmaLinux:8 nss-tools
AlmaLinux:8 nss-util
AlmaLinux:8 nss-util-devel

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities ALSA-2021:4903

Network Security Services (NSS) is a set of libraries designed to support the cross-platform development of security-enabled client and server applications. Security Fix(es): * nss: Memory corruption in decodeECorDsaSignature with DSA signatures (and RSA-PSS) (CVE-2021-43527) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

View original source

05 / REFERENCES

Further evidence