{"id":"RHSA-2019:1951","summary":"Red Hat Security Advisory: nss and nspr security, bug fix, and enhancement update","modified":"2026-03-12T10:01:28Z","published":"2024-09-16T02:36:00Z","upstream":["CVE-2018-18508","CVE-2019-11719","CVE-2019-11727","CVE-2019-11729","CVE-2019-17007"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:1951"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#moderate"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1671310"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1685325"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1719629"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1719630"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1722373"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1722374"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1725059"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1725110"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1725115"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1725116"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1728259"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1728260"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1728261"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1728436"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1728437"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1730988"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_1951.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2018-18508"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2018-18508"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-18508"},{"type":"ARTICLE","url":"https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.41.1_release_notes"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2019-11719"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2019-11719"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2019-11719"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11719"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2019-11727"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2019-11727"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2019-11727"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2019-21/#CVE-2019-11727"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2019-11729"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2019-11729"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2019-11729"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11729"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2019-17007"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1703979"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2019-17007"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2019-17007"}],"affected":[{"package":{"name":"nspr","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nspr"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.21.0-2.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nspr-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nspr-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.21.0-2.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nspr-debugsource","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nspr-debugsource"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.21.0-2.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nspr-devel","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nspr-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.21.0-2.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-debugsource","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-debugsource"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-devel","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-softokn","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-softokn"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-softokn-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-softokn-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-softokn-devel","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-softokn-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-softokn-freebl","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-softokn-freebl"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-softokn-freebl-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-softokn-freebl-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-softokn-freebl-devel","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-softokn-freebl-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-sysinit","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-sysinit"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-sysinit-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-sysinit-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-tools","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-tools"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-tools-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-tools-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-util","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-util"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-util-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-util-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}},{"package":{"name":"nss-util-devel","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/nss-util-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.44.0-7.el8_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:1951.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}