<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:23:07 +0000</lastBuildDate>
    <item>
      <title>certfr-2014-avi-053 — De multiples vulnérabilités ont été corrigées dans les produits &lt;span
class="textit"&gt;Mozilla&lt;/span&gt;. Elles permettent à…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2014-avi-053</link>
      <description>certfr-2014-avi-053</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2014-avi-053</guid>
    </item>
    <item>
      <title>EUVD-2026-97662</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-97662</link>
      <description>EUVD-2026-97662</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-97662</guid>
    </item>
    <item>
      <title>fkie_cve-2014-1491</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2014-1491</link>
      <description>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does not properly restrict public values in Diffie-Hellman key exchanges, which makes it easier for remote attackers to bypass cryptographic protection mechanisms in ticket handling by leveraging use of a certain value.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does not properly restrict public values in Diffie-Hellman key exchanges, which makes it easier for remote attackers to bypass cryptographic protection mechanisms in ticket handling by leveraging use of a certain value.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2014-1491</guid>
    </item>
    <item>
      <title>GHSA-v496-3mj8-fpc6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-v496-3mj8-fpc6</link>
      <description>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does not properly restrict public values in Diffie-Hellman key exchanges, which makes it easier for remote attackers to bypass cryptographic protection mechanisms in ticket handling by leveraging use of a certain value.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does not properly restrict public values in Diffie-Hellman key exchanges, which makes it easier for remote attackers to bypass cryptographic protection mechanisms in ticket handling by leveraging use of a certain value.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-v496-3mj8-fpc6</guid>
    </item>
    <item>
      <title>gsd-2014-1491</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2014-1491</link>
      <description>gsd-2014-1491</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2014-1491</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10071-1 — MozillaFirefox-50.1.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</link>
      <description>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</guid>
    </item>
    <item>
      <title>RHSA-2014:0917 — Red Hat Security Advisory: nss and nspr security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2014:0917</link>
      <description>&lt;p&gt;nss: false start PR_Recv information disclosure security issue nss: TOCTOU, potential use-after-free in libssl&amp;#39;s session ticket processing (MFSA 2014-12) nss: Do not allow p-1 as a public DH value (MFSA 2014-12) nss: IDNA hostname matching code does not follow RFC 6125 recommendation (MFSA 2014-45) nss: Race-condition in certificate verification can lead to Remote code execution (MFSA 2014-63) Mozilla: Out of bounds write in NSPR (MFSA 2014-55)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;nss: false start PR_Recv information disclosure security issue nss: TOCTOU, potential use-after-free in libssl&amp;#39;s session ticket processing (MFSA 2014-12) nss: Do not allow p-1 as a public DH value (MFSA 2014-12) nss: IDNA hostname matching code does not follow RFC 6125 recommendation (MFSA 2014-45) nss: Race-condition in certificate verification can lead to Remote code execution (MFSA 2014-63) Mozilla: Out of bounds write in NSPR (MFSA 2014-55)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2014:0917</guid>
    </item>
  </channel>
</rss>
