Re: about CVE-2024-7531 for nss 3.61 in Debian Bullseye
Arturo Borrero Gonzalez <[email protected]> Sun, 27 Oct 2024 11:40:21 -0700 (PDT)
| Newsgroups | gmane.comp.mozilla.crypto |
|---|---|
| Message-ID | <[email protected]> |
------=_Part_155456_1863246718.1730054421084 Content-Type: multipart/alternative; boundary="----=_Part_155457_1321436931.1730054421084" ------=_Part_155457_1321436931.1730054421084 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable El mi=C3=A9rcoles, 23 de octubre de 2024 a las 21:52:57 UTC+2, John Schanck= =20 escribi=C3=B3: Hi Arturo, NSS 3.61 is not affected. The bug was introduced in 3.72.=20 Hi John, thanks for this information, it is really valuable for us. Additionally, I would like to double check if this patch [0] is the fix for= =20 CVE-2024-7531. Could you please clarify if that one is correct? thanks, regards. [0]=20 https://hg.mozilla.org/projects/nss/rev/525c5044cc9e53f5015c697b04b1405df91= 003ac --=20 You received this message because you are subscribed to the Google Groups "= [email protected]" group. To unsubscribe from this group and stop receiving emails from it, send an e= mail to [email protected]. To view this discussion visit https://groups.google.com/a/mozilla.org/d/msg= id/dev-tech-crypto/792f6878-f34c-439a-99ca-bd063b64022dn%40mozilla.org. ------=_Part_155457_1321436931.1730054421084 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable <br /><br /><div><div dir=3D"auto">El mi=C3=A9rcoles, 23 de octubre de 2024= a las 21:52:57 UTC+2, John Schanck escribi=C3=B3:<br /></div><blockquote s= tyle=3D"margin: 0px 0px 0px 0.8ex; border-left: 1px solid rgb(204, 204, 204= ); padding-left: 1ex;">Hi Arturo, NSS 3.61 is not affected. The bug was int= roduced in 3.72. <br /> <br /><br /></blockquote><div><br /></div><div>Hi John,</div><div><br /></d= iv><div>thanks for this information, it is really valuable for us.</div><di= v><br /></div><div>Additionally, I would like to double check if this patch= [0] is the fix for CVE-2024-7531.</div><div>Could you please clarify if th= at one is correct?</div><div><br /></div><div>thanks, regards.<br /></div><= div><br /></div><div>[0] https://hg.mozilla.org/projects/nss/rev/525c5044cc= 9e53f5015c697b04b1405df91003ac</div></div> <p></p> -- <br /> You received this message because you are subscribed to the Google Groups &= quot;[email protected]" group.<br /> To unsubscribe from this group and stop receiving emails from it, send an e= mail to <a href=3D"mailto:[email protected]">dev-tech= [email protected]</a>.<br /> To view this discussion visit <a href=3D"https://groups.google.com/a/mozill= a.org/d/msgid/dev-tech-crypto/792f6878-f34c-439a-99ca-bd063b64022dn%40mozil= la.org?utm_medium=3Demail&utm_source=3Dfooter">https://groups.google.com/a/= mozilla.org/d/msgid/dev-tech-crypto/792f6878-f34c-439a-99ca-bd063b64022dn%4= 0mozilla.org</a>.<br /> ------=_Part_155457_1321436931.1730054421084-- ------=_Part_155456_1863246718.1730054421084--