UbuntuUpdates.org

Package "libnss3-dev"

Name: libnss3-dev

Description:

Development files for the Network Security Service libraries

Latest version: 2:3.98-1ubuntu0.2
Release: noble (24.04)
Level: security
Repository: main
Head package: nss
Homepage: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS

Links


Download "libnss3-dev"


Other versions of "libnss3-dev" in Noble

Repository Area Version
base main 2:3.98-1build1
updates main 2:3.98-1ubuntu0.2

Changelog

Version: 2:3.98-1ubuntu0.2 2026-06-29 21:07:37 UTC

  nss (2:3.98-1ubuntu0.2) noble-security; urgency=medium

  * SECURITY UPDATE: OOB read in pk11uri_ParseAttributes
    - debian/patches/CVE-2026-12318.patch: improve handling of escape
      sequences in nss/lib/util/pkcs11uri.c.
    - CVE-2026-12318

 -- Marc Deslauriers <email address hidden> Thu, 18 Jun 2026 07:25:53 -0400

Source diff to previous version
CVE-2026-12318 Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 152 and Thunderbird 152.

Version: 2:3.98-1ubuntu0.1 2026-03-04 15:08:11 UTC

  nss (2:3.98-1ubuntu0.1) noble-security; urgency=medium

  * SECURITY UPDATE: integer overflow in platform-independent ghash
    - debian/patches/CVE-2026-2781.patch: properly cast len in
      nss/lib/freebl/gcm.c.
    - CVE-2026-2781

 -- Marc Deslauriers <email address hidden> Thu, 26 Feb 2026 13:27:34 -0500

CVE-2026-2781 Integer overflow in the Libraries component in NSS. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird



About   -   Send Feedback to @ubuntu_updates