File _patchinfo of Package patchinfo.4457

<patchinfo incident="4457">
  <issue id="959888" tracker="bnc">VUL-0: EMBARGOED: CVE-2015-7575: mozilla-nss: TLS 1.2 RSA-mD5 downgrade attack</issue>
  <issue id="CVE-2015-7575" tracker="cve" />
  <category>security</category>
  <rating>moderate</rating>
  <packager>wrosenauer</packager>
  <description>
This update to mozilla-nss 3.20.2 fixes the following issues:

* CVE-2015-7575: MD5 signatures accepted within TLS 1.2 ServerKeyExchange in server signature (boo#952810)
</description>
  <summary>Security update for mozilla-nss</summary>
</patchinfo>
openSUSE Build Service is sponsored by