@taviso ("Tavis Ormandy") wrote:
This is a major memory corruption flaw in NSS, almost any use of NSS is affected. The Mozilla advisory is here https://www.mozilla.org/en-US/security/advisories/mfsa2021-51/
with quote tweet:
@ProjectZeroBugs ("Project Zero Bugs") wrote:
nss: memory corruption validating dsa/rsa-pss signatures https://bugs.chromium.org/p/project-zero/issues/detail?id=2237