https://www.tenable.com/cve/CVE-2021-43527
The solution is to update the NSS package. However the latest version on the official repository is 3.67.0 and the CVE states the following: ¨
This vulnerability affects NSS < 3.73 and NSS < 3.68.1.
Is it possible to update NSS manually somehow? I tried installing it from CentOS 9 Stream:
Code: Select all
sudo yum localinstall http://mirror.stream.centos.org/9-stream/AppStream/x86_64/os/Packages/nss-3.71.0-7.el9.x86_64.rpm
Code: Select all
Requires: crypto-policies >= 20210118