vulnerability
Ubuntu: (Multiple Advisories) (CVE-2020-12400): NSS vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 1 | (AV:L/AC:H/Au:N/C:P/I:N/A:N) | Aug 10, 2020 | Aug 11, 2020 | Apr 16, 2026 |
Severity
1
CVSS
(AV:L/AC:H/Au:N/C:P/I:N/A:N)
Published
Aug 10, 2020
Added
Aug 11, 2020
Modified
Apr 16, 2026
Description
When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.
Solutions
ubuntu-pro-upgrade-libnss3ubuntu-upgrade-firefoxubuntu-upgrade-libnss3
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.