The NSSCipherSuite option with ciphersuites enabled in mod_nss before 1.0.12 allows remote attackers to bypass application restrictions.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://pagure.io/mod_nss/c/34e1ccecb4a7d5054dba2f92b403af9b6ae1e110 | third party advisory patch |
http://lists.fedoraproject.org/pipermail/package-announce/2016-January/175248.html | third party advisory vendor advisory |
http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176026.html | third party advisory vendor advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1259216 | issue tracking third party advisory |