Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2023-5388
HistoryMar 19, 2024 - 12:15 p.m.

CVE-2023-5388

2024-03-1912:15:07
Alpine Linux Development Team
security.alpinelinux.org
15
nss
timing side-channel attack
rsa decryption
private data
firefox
thunderbird
vulnerability
unix

6.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.3%

NSS was susceptible to a timing side-channel attack when performing RSA decryption. This attack could potentially allow an attacker to recover the private data. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.