CVE-2020-12399
NSS has shown timing differences when performing DSA signatures, which was exploitable and could eventually leak private
NSS has shown timing differences when performing DSA signatures, which was exploitable and could eventually leak private keys. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.
MEDIUM · CVSS 4.4
EPSS 0.0009
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules1
YARA rules0