Loading HuntDB...

GHSA-cv99-mqp9-mr8m

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A flaw in DRBG number generation within the Network Security Services (NSS) library where the internal state V does not correctly carry bits over. The NSS library has been updated to fix this issue to address this issue and Firefox ESR 52.1 has been updated with NSS version 3.28.4. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.

Related CVEs

Key Information

GHSA ID
GHSA-cv99-mqp9-mr8m
Published
May 13, 2022 1:46 AM
Last Modified
October 21, 2024 3:32 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 10, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.