UbuntuUpdates.org

Package "libnss3-dev"

Name: libnss3-dev

Description:

Development files for the Network Security Service libraries

Latest version: 2:3.114-1ubuntu0.2
Release: questing (25.10)
Level: updates
Repository: main
Head package: nss
Homepage: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS

Links


Download "libnss3-dev"


Other versions of "libnss3-dev" in Questing

Repository Area Version
base main 2:3.114-1
security main 2:3.114-1ubuntu0.2

Changelog

Version: 2:3.114-1ubuntu0.2 2026-06-29 23:07:27 UTC

  nss (2:3.114-1ubuntu0.2) questing-security; urgency=medium

  * SECURITY UPDATE: OOB read in pk11uri_ParseAttributes
    - debian/patches/CVE-2026-12318.patch: improve handling of escape
      sequences in nss/lib/util/pkcs11uri.c.
    - CVE-2026-12318

 -- Marc Deslauriers <email address hidden> Thu, 18 Jun 2026 07:25:28 -0400

Source diff to previous version
CVE-2026-12318 Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 152 and Thunderbird 152.

Version: 2:3.114-1ubuntu0.1 2026-03-04 20:08:22 UTC

  nss (2:3.114-1ubuntu0.1) questing-security; urgency=medium

  * SECURITY UPDATE: integer overflow in platform-independent ghash
    - debian/patches/CVE-2026-2781.patch: properly cast len in
      nss/lib/freebl/gcm.c.
    - CVE-2026-2781

 -- Marc Deslauriers <email address hidden> Thu, 26 Feb 2026 13:27:13 -0500

CVE-2026-2781 Integer overflow in the Libraries component in NSS. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird



About   -   Send Feedback to @ubuntu_updates