REDHAT-BUG-1471171: Use After Free
Potential use-after-free vulnerability in nss in TLS 1.2 server when verifying client authentication was found.
Upstream bug:
https://bugzilla.mozilla.org/showbug.cgi?id=1377618
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1471171?
REDHAT-BUG-1471171 is classified as a potential use-after-free vulnerability which can impact the security of TLS 1.2 server client authentication.
How do I fix REDHAT-BUG-1471171?
To fix REDHAT-BUG-1471171, update your Mozilla NSS to the latest version that includes the security patch.
What software is affected by REDHAT-BUG-1471171?
The affected software for REDHAT-BUG-1471171 is Mozilla Network Security Services (NSS).
How does the vulnerability in REDHAT-BUG-1471171 affect client authentication?
The vulnerability in REDHAT-BUG-1471171 can lead to unauthorized access during the client authentication process.
Is there any workaround for REDHAT-BUG-1471171?
Currently, there is no documented workaround for REDHAT-BUG-1471171; the recommended action is to apply the security update.