<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:31:51 +0000</lastBuildDate>
    <item>
      <title>certfr-2015-avi-279 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;les produits Mozilla&lt;/span&gt;. Elles permettent à…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2015-avi-279</link>
      <description>certfr-2015-avi-279</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2015-avi-279</guid>
    </item>
    <item>
      <title>cnvd-2015-04425</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2015-04425</link>
      <description>cnvd-2015-04425</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2015-04425</guid>
    </item>
    <item>
      <title>EUVD-2026-91306</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-91306</link>
      <description>EUVD-2026-91306</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-91306</guid>
    </item>
    <item>
      <title>fkie_cve-2015-2721</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2015-2721</link>
      <description>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a &amp;#34;SMACK SKIP-TLS&amp;#34; issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a &amp;#34;SMACK SKIP-TLS&amp;#34; issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2015-2721</guid>
    </item>
    <item>
      <title>GHSA-fhwj-6xh8-h4rw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fhwj-6xh8-h4rw</link>
      <description>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a &amp;#34;SMACK SKIP-TLS&amp;#34; issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a &amp;#34;SMACK SKIP-TLS&amp;#34; issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fhwj-6xh8-h4rw</guid>
    </item>
    <item>
      <title>gsd-2015-2721</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2015-2721</link>
      <description>gsd-2015-2721</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2015-2721</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10071-1 — MozillaFirefox-50.1.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</link>
      <description>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</guid>
    </item>
    <item>
      <title>RHSA-2015:1664 — Red Hat Security Advisory: nss security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2015:1664</link>
      <description>&lt;p&gt;NSS: incorrectly permited skipping of ServerKeyExchange (MFSA 2015-71) NSS: ECDSA signature validation fails to handle some signatures correctly (MFSA 2015-64)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;NSS: incorrectly permited skipping of ServerKeyExchange (MFSA 2015-71) NSS: ECDSA signature validation fails to handle some signatures correctly (MFSA 2015-64)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2015:1664</guid>
    </item>
    <item>
      <title>SUSE-SU-2015:1268-1 — Security update for MozillaFirefox, mozilla-nspr, mozilla-nss</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2015:1268-1</link>
      <description>&lt;p&gt;Security update for MozillaFirefox, mozilla-nspr, mozilla-nss&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for MozillaFirefox, mozilla-nspr, mozilla-nss&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2015:1268-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2015-2721</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-2721</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: firefox, Ubuntu:14.04:LTS: nss, Ubuntu:14.04:LTS: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a &amp;#34;SMACK SKIP-TLS&amp;#34; issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: firefox, Ubuntu:14.04:LTS: nss, Ubuntu:14.04:LTS: thunderbird&lt;/p&gt;
&lt;p&gt;Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a &amp;#34;SMACK SKIP-TLS&amp;#34; issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-2721</guid>
    </item>
  </channel>
</rss>
