Vulnerabilities > NSS Compat Ossl Project

DATE CVE VULNERABILITY TITLE RISK
2017-07-25 CVE-2015-3278 Improper Input Validation vulnerability in NSS Compat Ossl Project NSS Compat Ossl
The cipherstring parsing code in nss_compat_ossl while in multi-keyword mode does not match the expected set of ciphers for a given cipher combination, which allows attackers to have unspecified impact via unknown vectors.
network
low complexity
nss-compat-ossl-project CWE-20
critical
9.8