The cipherstring parsing code in nss_compat_ossl while in multi-keyword mode does not match the expected set of ciphers for a given cipher combination, which allows attackers to have unspecified impact via unknown vectors.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2017-07-25T18:00:00

Updated: 2024-08-06T05:39:32.138Z

Reserved: 2015-04-10T00:00:00

Link: CVE-2015-3278

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-07-25T18:29:00.527

Modified: 2017-07-31T19:04:17.633

Link: CVE-2015-3278

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-07-15T00:00:00Z

Links: CVE-2015-3278 - Bugzilla