It was discovered that NSS incorrectly handled client authentication
without a user certificate in the database. A remote attacker could
possibly use this issue to cause a NSS client to crash, resulting in a
denial of service. This issue only affected Ubuntu 22.10. (CVE-2022-3479)
Christian Holler discovered that NSS incorrectly handled certain PKCS 12
certificated bundles. A remote attacker could use this issue to cause NSS
to crash, leading to a denial of service, or possibly execute arbitrary
code. (CVE-2023-0767)
More Stories
USN-7408-2: Linux kernel (FIPS) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This...
USN-7408-1: Linux kernel vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This...
openvpn-2.6.14-1.fc40
FEDORA-2025-3711fce03c Packages in this update: openvpn-2.6.14-1.fc40 Update description: Update to upstream OpenVPN 2.6.14 Fixes CVE-2025-2704 Read More
openvpn-2.6.14-1.fc41
FEDORA-2025-277b5e1d96 Packages in this update: openvpn-2.6.14-1.fc41 Update description: Update to upstream OpenVPN 2.6.14 Fixes CVE-2025-2704 Read More
openvpn-2.6.14-1.fc42
FEDORA-2025-e439589b9d Packages in this update: openvpn-2.6.14-1.fc42 Update description: Update to upstream OpenVPN 2.6.14 Fixes CVE-2025-2704 Read More
USN-7406-3: Linux kernel (Real-time) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This...