Red Hat Enterprise Linux 9 NSS Cryptographic Module

Known vulnerabilities detected

Our automated heuristics have identified vulnerabilities that may be associated with this certificate. See the CVEs section for details.

Certificate details

Certificate ID #5022
Status active
Validation dates 30.05.2025
Sunset date 29-05-2030
Standard FIPS 140-3
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When operated in approved mode and installed, initialized and configured as specified in the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.
Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
Description Network Security Services (NSS) is a set of open source C libraries designed to support cross-platform development of security-enabled applications. NSS implements major Internet security standards. NSS is available free of charge under a variety of open source compatible licenses. See http://www.mozilla.org/projects/security/pki/nss/.
Vendor Red Hat, Inc http://www.redhat.com
Lab atsec information security corporation
Algorithms
  • AES-CBC-CS1A4992
  • AES-CBCA4994
  • AES-CMACA4989
  • AES-CTRA4994
  • AES-ECBA4994
  • AES-GCMA5559
  • AES-KWA4993
  • AES-KWPA4993
  • ECDSA KeyGen (FIPS186-5)A4987
  • ECDSA SigGen (FIPS186-5)A4987
  • ECDSA SigVer (FIPS186-5)A4987
  • Hash DRBGA4987
  • HMAC-SHA-1A4987
  • HMAC-SHA2-224A4987
  • HMAC-SHA2-256A4987
  • HMAC-SHA2-384A4987
  • HMAC-SHA2-512A4987
  • KAS-ECC-SSC Sp800-56Ar3A4987
  • KAS-FFC-SSC Sp800-56Ar3A4987
  • KDA HKDF Sp800-56Cr1A4986
  • KDF IKEv2A4991
  • KDF SP800-108A4990
  • PBKDFA4987
  • RSA KeyGen (FIPS186-5)A4987
  • RSA SigGen (FIPS186-5)A4987
  • RSA SigVer (FIPS186-2)A4987
  • RSA SigVer (FIPS186-4)A4987
  • RSA SigVer (FIPS186-5)A4987
  • Safe Primes Key GenerationA4987
  • SHA2-224A4987
  • SHA2-256A4987
  • SHA2-384A4987
  • SHA2-512A4987
  • TLS v1.2 KDF RFC7627A4987
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Extracted keywords

Symmetric Algorithms
AES, CAST, RC2, RC4, DES, Triple-DES, ChaCha20, Poly1305, Camellia, SEED, HMAC, HMAC-SHA-256, CBC-MAC, CMAC
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSA
Hash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, MD5, PBKDF2, PBKDF
Schemes
MAC, Key Agreement
Protocols
SSL, TLS, TLS v1.2, TLS 1.2, TLS 1.3, IKEv2, IKEv1, IKE
Randomness
DRBG, RNG, RBG
Libraries
NSS
Elliptic Curves
P-256, P-384, P-521, Ed25519
Block cipher modes
GCM

JavaCard API constants
X25519
Trusted Execution Environments
PSP, SSC

Security level
Level 1
Side-channel analysis
Timing attacks, timing attack, timing attacks

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

CVE matches

ID Links Severity CVSS Score Published on
Base score
CVE-2016-7091
C N
MEDIUM 4.4 22.12.2016
CVE-2020-14394
C N
LOW 3.2 17.08.2022
CVE-2021-35937
C N
MEDIUM 6.4 25.08.2022
CVE-2021-35938
C N
MEDIUM 6.7 25.08.2022
CVE-2021-3695
C N
MEDIUM 4.5 06.07.2022
CVE-2021-3696
C N
MEDIUM 4.5 06.07.2022
CVE-2021-3697
C N
HIGH 7.0 06.07.2022
CVE-2021-3839
C N
HIGH 7.5 23.08.2022
CVE-2021-3864
C N
HIGH 7.0 26.08.2022
CVE-2021-3997
C N
MEDIUM 5.5 23.08.2022
CVE-2021-4158
C N
MEDIUM 6.0 24.08.2022
CVE-2021-4204
C N
HIGH 7.1 24.08.2022
CVE-2021-4217
C N
LOW 3.3 24.08.2022
CVE-2022-0168
C N
MEDIUM 4.4 26.08.2022
CVE-2022-0171
C N
MEDIUM 5.5 26.08.2022
CVE-2022-0480
C N
MEDIUM 5.5 29.08.2022
CVE-2022-0934
C N
HIGH 7.5 29.08.2022
CVE-2022-0987
C N
LOW 3.3 28.06.2022
CVE-2022-1016
C N
MEDIUM 5.5 29.08.2022
CVE-2022-1158
C N
HIGH 7.8 05.08.2022
CVE-2022-1184
C N
MEDIUM 5.5 29.08.2022
CVE-2022-1198
C N
MEDIUM 5.5 29.08.2022
CVE-2022-1247
C N
HIGH 7.0 31.08.2022
CVE-2022-1263
C N
MEDIUM 5.5 31.08.2022
CVE-2022-1354
C N
MEDIUM 5.5 31.08.2022
CVE-2022-1355
C N
MEDIUM 6.1 31.08.2022
CVE-2022-1462
C N
MEDIUM 6.3 02.06.2022
CVE-2022-1586
C N
CRITICAL 9.1 16.05.2022
CVE-2022-1587
C N
CRITICAL 9.1 16.05.2022
CVE-2022-1652
C N
HIGH 7.8 02.06.2022
CVE-2022-1706
C N
MEDIUM 6.5 17.05.2022
CVE-2022-1708
C N
HIGH 7.5 07.06.2022
CVE-2022-1789
C N
MEDIUM 6.8 02.06.2022
CVE-2022-1852
C N
MEDIUM 5.5 30.06.2022
CVE-2022-1949
C N
HIGH 7.5 02.06.2022
CVE-2022-1998
C N
HIGH 7.8 09.06.2022
CVE-2022-2078
C N
MEDIUM 5.5 30.06.2022
CVE-2022-2127
C N
MEDIUM 5.9 20.07.2023
CVE-2022-2132
C N
HIGH 8.6 31.08.2022
CVE-2022-2153
C N
MEDIUM 5.5 31.08.2022
CVE-2022-2211
C N
MEDIUM 6.5 12.07.2022
CVE-2022-2393
C N
MEDIUM 5.7 14.07.2022
CVE-2022-24805
C N
HIGH 8.8 16.04.2024
CVE-2022-24806
C N
MEDIUM 5.3 16.04.2024
CVE-2022-24807
C N
MEDIUM 6.5 16.04.2024
CVE-2022-24808
C N
MEDIUM 6.5 16.04.2024
CVE-2022-24809
C N
MEDIUM 6.5 16.04.2024
CVE-2022-2509
C N
HIGH 7.5 01.08.2022
CVE-2022-25308
C N
HIGH 7.8 06.09.2022
CVE-2022-25309
C N
MEDIUM 5.5 06.09.2022
CVE-2022-25310
C N
MEDIUM 5.5 06.09.2022
CVE-2022-2625
C N
HIGH 8.0 18.08.2022
CVE-2022-2639
C N
HIGH 7.8 01.09.2022
CVE-2022-2850
C N
MEDIUM 6.5 14.10.2022
CVE-2022-2873
C N
MEDIUM 5.5 22.08.2022
CVE-2022-2963
C N
HIGH 7.5 14.10.2022
CVE-2022-2964
C N
HIGH 7.8 09.09.2022
CVE-2022-2989
C N
HIGH 7.1 13.09.2022
CVE-2022-2990
C N
HIGH 7.1 13.09.2022
CVE-2022-3424
C N
HIGH 7.8 06.03.2023
CVE-2022-34301
C N
MEDIUM 6.7 26.08.2022
CVE-2022-34302
C N
MEDIUM 6.7 26.08.2022
CVE-2022-34303
C N
MEDIUM 6.7 26.08.2022
CVE-2022-3500
C N
MEDIUM 5.1 22.11.2022
CVE-2022-3560
C N
MEDIUM 5.5 02.02.2023
CVE-2022-3707
C N
MEDIUM 5.5 06.03.2023
CVE-2022-3715
C N
HIGH 7.8 05.01.2023
CVE-2022-3787
C N
HIGH 7.8 29.03.2023
CVE-2022-3821
C N
MEDIUM 5.5 08.11.2022
CVE-2022-40982
C N
MEDIUM 6.5 11.08.2023
CVE-2022-4132
C N
MEDIUM 5.9 04.10.2023
CVE-2022-4283
C N
HIGH 7.8 14.12.2022
CVE-2022-4285
C N
MEDIUM 5.5 27.01.2023
CVE-2022-4743
C N
HIGH 7.5 12.01.2023
CVE-2022-4900
C N
MEDIUM 5.5 02.11.2023
CVE-2022-4904
C N
HIGH 8.6 06.03.2023
CVE-2023-0179
C N
HIGH 7.8 27.03.2023
CVE-2023-0361
C N
HIGH 7.4 15.02.2023
CVE-2023-0494
C N
HIGH 7.8 27.03.2023
CVE-2023-0664
C N
HIGH 7.8 29.03.2023
CVE-2023-0778
C N
MEDIUM 6.8 27.03.2023
CVE-2023-1073
C N
MEDIUM 6.6 27.03.2023
CVE-2023-1095
C N
MEDIUM 5.5 28.02.2023
CVE-2023-1183
C N
MEDIUM 5.5 10.07.2023
CVE-2023-1192
C N
MEDIUM 6.5 01.11.2023
CVE-2023-1206
C N
MEDIUM 5.7 30.06.2023
CVE-2023-1289
C N
MEDIUM 5.5 23.03.2023
CVE-2023-1380
C N
HIGH 7.1 27.03.2023
CVE-2023-1513
C N
LOW 3.3 23.03.2023
CVE-2023-1652
C N
HIGH 7.1 29.03.2023
CVE-2023-1667
C N
MEDIUM 6.5 26.05.2023
CVE-2023-1672
C N
MEDIUM 5.3 11.07.2023
CVE-2023-1729
C N
MEDIUM 6.5 15.05.2023
CVE-2023-1981
C N
MEDIUM 5.5 26.05.2023
CVE-2023-2019
C N
MEDIUM 4.4 24.04.2023
CVE-2023-2156
C N
HIGH 7.5 09.05.2023
CVE-2023-2194
C N
MEDIUM 6.7 20.04.2023
CVE-2023-2203
C N
HIGH 8.8 17.05.2023
CVE-2023-2283
C N
MEDIUM 6.5 26.05.2023
CVE-2023-2295
C N
HIGH 7.5 17.05.2023
CVE-2023-2454
C N
HIGH 7.2 09.06.2023
CVE-2023-2455
C N
MEDIUM 5.4 09.06.2023
CVE-2023-2491
C N
HIGH 7.8 17.05.2023
CVE-2023-2513
C N
MEDIUM 6.7 08.05.2023
CVE-2023-2602
C N
LOW 3.3 06.06.2023
CVE-2023-2603
C N
HIGH 7.8 06.06.2023
CVE-2023-2680
C N
HIGH 8.2 13.09.2023
CVE-2023-2700
C N
MEDIUM 5.5 15.05.2023
CVE-2023-2731
C N
MEDIUM 5.5 17.05.2023
CVE-2023-27561
C N
HIGH 7.0 03.03.2023
CVE-2023-28327
C N
MEDIUM 5.5 19.04.2023
CVE-2023-2953
C N
HIGH 7.5 30.05.2023
CVE-2023-2977
C N
HIGH 7.1 01.06.2023
CVE-2023-3019
C N
MEDIUM 6.5 24.07.2023
CVE-2023-3138
C N
HIGH 7.5 28.06.2023
CVE-2023-3161
C N
MEDIUM 5.5 12.06.2023
CVE-2023-3164
C N
MEDIUM 5.5 02.11.2023
CVE-2023-3212
C N
MEDIUM 4.4 23.06.2023
CVE-2023-32233
C N
HIGH 7.8 08.05.2023
CVE-2023-32373
C N
HIGH 8.8 23.06.2023
CVE-2023-3255
C N
MEDIUM 6.5 13.09.2023
CVE-2023-32573
C N
MEDIUM 6.5 10.05.2023
CVE-2023-3269
C N
HIGH 7.8 11.07.2023
CVE-2023-3301
C N
MEDIUM 5.6 13.09.2023
CVE-2023-33203
C N
MEDIUM 6.4 18.05.2023
CVE-2023-3347
C N
MEDIUM 5.9 20.07.2023
CVE-2023-3354
C N
HIGH 7.5 11.07.2023
CVE-2023-33951
C N
MEDIUM 5.3 24.07.2023
CVE-2023-33952
C N
MEDIUM 6.7 24.07.2023
CVE-2023-34966
C N
HIGH 7.5 20.07.2023
CVE-2023-34967
C N
MEDIUM 5.3 20.07.2023
CVE-2023-34968
C N
MEDIUM 5.3 20.07.2023
CVE-2023-3567
C N
HIGH 7.1 24.07.2023
CVE-2023-3576
C N
MEDIUM 5.5 04.10.2023
CVE-2023-3618
C N
MEDIUM 6.5 12.07.2023
CVE-2023-3640
C N
HIGH 7.8 24.07.2023
CVE-2023-3750
C N
MEDIUM 5.3 24.07.2023
CVE-2023-3772
C N
MEDIUM 4.4 25.07.2023
CVE-2023-3773
C N
MEDIUM 4.4 25.07.2023
CVE-2023-3812
C N
HIGH 7.8 24.07.2023
CVE-2023-38200
C N
HIGH 7.5 24.07.2023
CVE-2023-38201
C N
MEDIUM 6.5 25.08.2023
CVE-2023-38469
C N
MEDIUM 5.5 02.11.2023
CVE-2023-38470
C N
MEDIUM 5.5 02.11.2023
CVE-2023-38471
C N
MEDIUM 5.5 02.11.2023
CVE-2023-38472
C N
MEDIUM 5.5 02.11.2023
CVE-2023-38473
C N
MEDIUM 5.5 02.11.2023
CVE-2023-38559
C N
MEDIUM 5.5 01.08.2023
CVE-2023-3899
C N
HIGH 7.8 23.08.2023
CVE-2023-39189
C N
MEDIUM 6.0 09.10.2023
CVE-2023-39191
C N
HIGH 8.2 04.10.2023
CVE-2023-39193
C N
MEDIUM 6.0 09.10.2023
CVE-2023-39194
C N
MEDIUM 4.4 09.10.2023
CVE-2023-39198
C N
MEDIUM 6.4 09.11.2023
CVE-2023-39417
C N
HIGH 8.8 11.08.2023
CVE-2023-39418
C N
MEDIUM 4.3 11.08.2023
CVE-2023-3972
C N
HIGH 7.8 01.11.2023
CVE-2023-4001
C N
MEDIUM 6.8 15.01.2024
CVE-2023-4004
C N
HIGH 7.8 31.07.2023
CVE-2023-4010
C N
MEDIUM 4.6 31.07.2023
CVE-2023-40546
C N
MEDIUM 5.5 29.01.2024
CVE-2023-40547
C N
HIGH 8.3 25.01.2024
CVE-2023-40549
C N
MEDIUM 5.5 29.01.2024
CVE-2023-40550
C N
MEDIUM 5.5 29.01.2024
CVE-2023-40551
C N
MEDIUM 5.1 29.01.2024
CVE-2023-40660
C N
MEDIUM 6.6 06.11.2023
CVE-2023-40661
C N
MEDIUM 6.4 06.11.2023
CVE-2023-40745
C N
MEDIUM 6.5 05.10.2023
CVE-2023-41175
C N
MEDIUM 6.5 05.10.2023
CVE-2023-4133
C N
MEDIUM 5.5 03.08.2023
CVE-2023-4147
C N
HIGH 7.8 07.08.2023
CVE-2023-4155
C N
MEDIUM 5.6 13.09.2023
CVE-2023-4194
C N
MEDIUM 5.5 07.08.2023
CVE-2023-42669
C N
MEDIUM 6.5 06.11.2023
CVE-2023-4273
C N
MEDIUM 6.7 09.08.2023
CVE-2023-42753
C N
HIGH 7.8 25.09.2023
CVE-2023-42754
C N
MEDIUM 5.5 05.10.2023
CVE-2023-42756
C N
MEDIUM 4.7 28.09.2023
CVE-2023-43785
C N
MEDIUM 5.5 10.10.2023
CVE-2023-43786
C N
MEDIUM 5.5 10.10.2023
CVE-2023-43787
C N
HIGH 7.8 10.10.2023
CVE-2023-43788
C N
MEDIUM 5.5 10.10.2023
CVE-2023-43789
C N
MEDIUM 5.5 12.10.2023
CVE-2023-4387
C N
HIGH 7.1 16.08.2023
CVE-2023-44487
C N
HIGH 7.5 10.10.2023
CVE-2023-44488
C N
HIGH 7.5 30.09.2023
CVE-2023-4459
C N
MEDIUM 5.5 21.08.2023
CVE-2023-4527
C N
MEDIUM 6.5 18.09.2023
CVE-2023-4535
C N
LOW 3.8 06.11.2023
CVE-2023-4569
C N
MEDIUM 5.5 28.08.2023
CVE-2023-4641
C N
MEDIUM 5.5 27.12.2023
CVE-2023-46846
C N
MEDIUM 5.3 03.11.2023
CVE-2023-46847
C N
HIGH 7.5 03.11.2023
CVE-2023-46848
C N
HIGH 7.5 03.11.2023
CVE-2023-4692
C N
HIGH 7.8 25.10.2023
CVE-2023-4693
C N
MEDIUM 4.6 25.10.2023
CVE-2023-47038
C N
HIGH 7.8 18.12.2023
CVE-2023-4806
C N
MEDIUM 5.9 18.09.2023
CVE-2023-4813
C N
MEDIUM 5.9 12.09.2023
CVE-2023-48795
C N
MEDIUM 5.9 18.12.2023
CVE-2023-4911
C N
HIGH 7.8 03.10.2023
CVE-2023-50387
C N
HIGH 7.5 14.02.2024
CVE-2023-50781
C N
HIGH 7.5 05.02.2024
CVE-2023-50782
C N
HIGH 7.5 05.02.2024
CVE-2023-5088
C N
HIGH 7.0 03.11.2023
CVE-2023-5090
C N
MEDIUM 5.5 06.11.2023
CVE-2023-5156
C N
HIGH 7.5 25.09.2023
CVE-2023-5157
C N
HIGH 7.5 27.09.2023
CVE-2023-51764
C N
MEDIUM 5.3 24.12.2023
CVE-2023-51765
C N
MEDIUM 5.3 24.12.2023
CVE-2023-51767
C N
HIGH 7.0 24.12.2023
CVE-2023-5178
C N
HIGH 8.8 01.11.2023
CVE-2023-5215
C N
MEDIUM 6.5 28.09.2023
CVE-2023-52160
C N
MEDIUM 6.5 22.02.2024
CVE-2023-5217
C N
HIGH 8.8 28.09.2023
CVE-2023-52355
C N
HIGH 7.5 25.01.2024
CVE-2023-52356
C N
HIGH 7.5 25.01.2024
CVE-2023-5367
C N
HIGH 7.8 25.10.2023
CVE-2023-5380
C N
MEDIUM 4.7 25.10.2023
CVE-2023-5455
C N
MEDIUM 6.5 10.01.2024
CVE-2023-5557
C N
HIGH 7.7 13.10.2023
CVE-2023-5633
C N
HIGH 7.8 23.10.2023
CVE-2023-5824
C N
HIGH 7.5 03.11.2023
CVE-2023-5868
C N
MEDIUM 4.3 10.12.2023
CVE-2023-5869
C N
HIGH 8.8 10.12.2023
CVE-2023-5870
C N
MEDIUM 4.4 10.12.2023
CVE-2023-5871
C N
MEDIUM 5.3 27.11.2023
CVE-2023-5992
C N
MEDIUM 5.9 31.01.2024
CVE-2023-6004
C N
MEDIUM 4.8 03.01.2024
CVE-2023-6121
C N
MEDIUM 4.3 16.11.2023
CVE-2023-6176
C N
MEDIUM 4.7 16.11.2023
CVE-2023-6240
C N
MEDIUM 6.5 04.02.2024
CVE-2023-6356
C N
HIGH 7.5 07.02.2024
CVE-2023-6531
C N
HIGH 7.0 21.01.2024
CVE-2023-6535
C N
HIGH 7.5 07.02.2024
CVE-2023-6536
C N
HIGH 7.5 07.02.2024
CVE-2023-6546
C N
HIGH 7.0 21.12.2023
CVE-2023-6606
C N
HIGH 7.1 08.12.2023
CVE-2023-6610
C N
HIGH 7.1 08.12.2023
CVE-2023-6622
C N
MEDIUM 5.5 08.12.2023
CVE-2023-6679
C N
MEDIUM 5.5 11.12.2023
CVE-2023-6681
C N
MEDIUM 5.3 12.02.2024
CVE-2023-6683
C N
MEDIUM 6.5 12.01.2024
CVE-2023-6693
C N
MEDIUM 5.3 02.01.2024
CVE-2023-6710
C N
MEDIUM 5.4 12.12.2023
CVE-2023-6915
C N
MEDIUM 5.5 15.01.2024
CVE-2023-6917
C N
MEDIUM 6.7 28.02.2024
CVE-2023-6918
C N
MEDIUM 5.3 19.12.2023
CVE-2023-7192
C N
MEDIUM 4.4 02.01.2024
CVE-2023-7216
C N
MEDIUM 5.3 05.02.2024
CVE-2023-7250
C N
MEDIUM 5.3 18.03.2024
CVE-2024-0217
C N
LOW 3.3 03.01.2024
CVE-2024-0229
C N
HIGH 7.8 09.02.2024
CVE-2024-0232
C N
MEDIUM 5.5 16.01.2024
CVE-2024-0408
C N
MEDIUM 5.5 18.01.2024
CVE-2024-0409
C N
HIGH 7.8 18.01.2024
CVE-2024-0443
C N
MEDIUM 5.5 12.01.2024
CVE-2024-0553
C N
HIGH 7.5 16.01.2024
CVE-2024-0562
C N
HIGH 7.8 15.01.2024
CVE-2024-0564
C N
MEDIUM 6.5 30.01.2024
CVE-2024-0607
C N
MEDIUM 6.6 18.01.2024
CVE-2024-0639
C N
MEDIUM 5.5 17.01.2024
CVE-2024-0641
C N
MEDIUM 5.5 17.01.2024
CVE-2024-0646
C N
HIGH 7.8 17.01.2024
CVE-2024-0690
C N
MEDIUM 5.5 06.02.2024
CVE-2024-0775
C N
HIGH 7.1 22.01.2024
CVE-2024-0841
C N
HIGH 7.8 28.01.2024
CVE-2024-0914
C N
MEDIUM 5.9 31.01.2024
CVE-2024-1048
C N
LOW 3.3 06.02.2024
CVE-2024-1151
C N
MEDIUM 5.5 11.02.2024
CVE-2024-12085
C N
HIGH 7.5 14.01.2025
CVE-2024-12086
C N
MEDIUM 6.8 14.01.2025
CVE-2024-12087
C N
HIGH 7.5 14.01.2025
CVE-2024-12088
C N
HIGH 7.5 14.01.2025
CVE-2024-1454
C N
LOW 3.4 12.02.2024
CVE-2024-1488
C N
HIGH 7.3 15.02.2024
CVE-2024-23301
C N
MEDIUM 5.5 12.01.2024
CVE-2024-2496
C N
MEDIUM 5.5 18.03.2024
CVE-2024-3049
C N
MEDIUM 5.9 06.06.2024
CVE-2024-3056
C N
MEDIUM 4.8 02.08.2024
CVE-2024-3567
C N
MEDIUM 5.5 10.04.2024
CVE-2024-44070
C N
HIGH 7.5 19.08.2024
CVE-2024-45615
C N
LOW 3.9 03.09.2024
CVE-2024-45616
C N
LOW 3.9 03.09.2024
CVE-2024-45617
C N
LOW 3.9 03.09.2024
CVE-2024-45618
C N
LOW 3.9 03.09.2024
CVE-2024-45619
C N
MEDIUM 4.3 03.09.2024
CVE-2024-45620
C N
LOW 3.9 03.09.2024
CVE-2024-45777
C N
MEDIUM 6.7 19.02.2025
CVE-2024-45778
C N
MEDIUM 5.5 03.03.2025
CVE-2024-45782
C N
HIGH 7.8 03.03.2025
CVE-2024-49393
C N
MEDIUM 5.9 12.11.2024
CVE-2024-49394
C N
MEDIUM 5.3 12.11.2024
CVE-2024-49395
C N
MEDIUM 5.3 12.11.2024
CVE-2024-50074
C N
HIGH 7.8 29.10.2024
CVE-2024-5742
C N
MEDIUM 6.7 12.06.2024
CVE-2024-6237
C N
MEDIUM 6.5 09.07.2024
CVE-2024-6239
C N
HIGH 7.5 21.06.2024
CVE-2024-6387
C N
HIGH 8.1 01.07.2024
CVE-2024-6505
C N
MEDIUM 6.8 05.07.2024
CVE-2024-7006
C N
HIGH 7.5 12.08.2024
CVE-2024-8354
C N
MEDIUM 5.5 19.09.2024
CVE-2024-8443
C N
LOW 2.9 10.09.2024
CVE-2024-9341
C N
HIGH 8.2 01.10.2024
CVE-2024-9675
C N
MEDIUM 4.4 09.10.2024
CVE-2024-9676
C N
MEDIUM 6.5 15.10.2024
CVE-2025-0678
C N
HIGH 7.8 03.03.2025
CVE-2025-12801
C N
MEDIUM 6.5 04.03.2026
CVE-2025-14087
C N
CRITICAL 9.8 10.12.2025
CVE-2025-14512
C N
MEDIUM 6.5 11.12.2025
CVE-2025-26465
C N
MEDIUM 6.8 18.02.2025
CVE-2025-26594
C N
HIGH 7.8 25.02.2025
CVE-2025-26595
C N
HIGH 7.8 25.02.2025
CVE-2025-26596
C N
HIGH 7.8 25.02.2025
CVE-2025-26597
C N
HIGH 7.8 25.02.2025
CVE-2025-26598
C N
HIGH 7.8 25.02.2025
CVE-2025-26599
C N
HIGH 7.8 25.02.2025
CVE-2025-26600
C N
HIGH 7.8 25.02.2025
CVE-2025-26601
C N
HIGH 7.8 25.02.2025
CVE-2025-2784
C N
MEDIUM 6.5 03.04.2025
CVE-2025-31277
C N
HIGH 8.8 30.07.2025
CVE-2025-3155
C N
HIGH 7.4 03.04.2025
CVE-2025-32988
C N
HIGH 8.2 10.07.2025
CVE-2025-32989
C N
MEDIUM 5.3 10.07.2025
CVE-2025-32990
C N
HIGH 8.2 10.07.2025
CVE-2025-3891
C N
HIGH 7.5 29.04.2025
CVE-2025-4598
C N
MEDIUM 4.7 30.05.2025
CVE-2025-46397
C N
HIGH 7.8 23.04.2025
CVE-2025-46399
C N
MEDIUM 5.5 23.04.2025
CVE-2025-46400
C N
MEDIUM 5.5 23.04.2025
CVE-2025-47711
C N
MEDIUM 6.5 09.06.2025
CVE-2025-5318
C N
HIGH 8.1 24.06.2025
CVE-2025-5351
C N
MEDIUM 6.5 04.07.2025
CVE-2025-5372
C N
HIGH 8.8 04.07.2025
CVE-2025-5914
C N
HIGH 7.8 09.06.2025
CVE-2025-5915
C N
MEDIUM 6.6 09.06.2025
CVE-2025-5916
C N
MEDIUM 5.6 09.06.2025
CVE-2025-5917
C N
MEDIUM 5.0 09.06.2025
CVE-2025-5918
C N
MEDIUM 6.6 09.06.2025
CVE-2025-6021
C N
HIGH 7.5 12.06.2025
CVE-2025-6170
C N
LOW 2.5 16.06.2025
CVE-2025-62230
C N
HIGH 7.3 30.10.2025
CVE-2025-62231
C N
HIGH 7.3 30.10.2025
CVE-2025-7424
C N
HIGH 7.5 10.07.2025
CVE-2025-7519
C N
MEDIUM 6.7 14.07.2025
CVE-2025-8283
C N
LOW 3.7 28.07.2025
CVE-2025-9572
C N
MEDIUM 6.5 27.02.2026
CVE-2025-9784
C N
HIGH 7.5 02.09.2025
CVE-2026-0964
C N
MEDIUM 6.3 26.03.2026
CVE-2026-0965
C N
LOW 3.3 26.03.2026
CVE-2026-0966
C N
HIGH 8.2 26.03.2026
CVE-2026-0967
C N
MEDIUM 5.5 26.03.2026
CVE-2026-0968
C N
LOW 3.1 26.03.2026
CVE-2026-0989
C N
LOW 3.7 15.01.2026
CVE-2026-0990
C N
MEDIUM 5.9 15.01.2026
CVE-2026-0992
C N
LOW 2.9 15.01.2026
CVE-2026-11611
C N
MEDIUM 6.5 08.06.2026
CVE-2026-11770
C N
HIGH 7.5 31.07.2026
CVE-2026-11785
C N
MEDIUM 4.3 09.06.2026
CVE-2026-11786
C N
MEDIUM 6.5 09.06.2026
CVE-2026-11787
C N
MEDIUM 6.3 09.06.2026
CVE-2026-11788
C N
HIGH 7.5 09.06.2026
CVE-2026-11789
C N
MEDIUM 6.5 09.06.2026
CVE-2026-11790
C N
MEDIUM 4.9 09.06.2026
CVE-2026-11791
C N
MEDIUM 5.0 18.06.2026
CVE-2026-11820
C N
MEDIUM 6.5 23.06.2026
CVE-2026-11861
C N
HIGH 8.1 20.08.2026
CVE-2026-12528
C N
MEDIUM 5.4 17.06.2026
CVE-2026-12549
C N
MEDIUM 4.8 22.06.2026
CVE-2026-12725
C N
MEDIUM 5.9 22.06.2026
CVE-2026-12891
C N
MEDIUM 4.3 23.06.2026
CVE-2026-12892
C N
MEDIUM 4.4 23.06.2026
CVE-2026-13002
C N
MEDIUM 4.4 14.08.2026
CVE-2026-13097
C N
HIGH 8.7 20.08.2026
CVE-2026-13595
C N
MEDIUM 5.3 29.06.2026
CVE-2026-13601
C N
MEDIUM 6.5 29.06.2026
CVE-2026-13757
C N
MEDIUM 6.2 29.06.2026
CVE-2026-1467
C N
MEDIUM 5.3 27.01.2026
CVE-2026-14940
C N
MEDIUM 5.3 07.07.2026
CVE-2026-14969
C N
MEDIUM 4.4 07.07.2026
CVE-2026-15041
C N
LOW 3.7 08.07.2026
CVE-2026-1536
C N
MEDIUM 5.3 28.01.2026
CVE-2026-1539
C N
MEDIUM 5.8 28.01.2026
CVE-2026-15722
C N
HIGH 7.5 31.07.2026
CVE-2026-1709
C N
CRITICAL 9.8 06.02.2026
CVE-2026-1764
C N
MEDIUM 5.6 16.06.2026
CVE-2026-1766
C N
MEDIUM 6.1 16.06.2026
CVE-2026-1767
C N
HIGH 8.1 16.06.2026
CVE-2026-1801
C N
MEDIUM 6.5 03.02.2026
CVE-2026-18477
C N
MEDIUM 4.4 03.08.2026
CVE-2026-18508
C N
MEDIUM 4.4 03.08.2026
CVE-2026-18651
C N
MEDIUM 5.4 03.08.2026
CVE-2026-18726
C N
MEDIUM 6.5 12.08.2026
CVE-2026-18727
C N
MEDIUM 6.5 12.08.2026
CVE-2026-18728
C N
MEDIUM 6.5 13.08.2026
CVE-2026-1933
C N
MEDIUM 6.5 27.05.2026
CVE-2026-1940
C N
HIGH 7.5 23.03.2026
CVE-2026-19548
C N
MEDIUM 5.5 12.08.2026
CVE-2026-19550
C N
HIGH 8.2 11.08.2026
CVE-2026-19617
C N
MEDIUM 5.5 14.08.2026
CVE-2026-19654
C N
HIGH 7.5 12.08.2026
CVE-2026-2100
C N
HIGH 7.5 26.03.2026
CVE-2026-21710
C N
HIGH 7.5 30.03.2026
CVE-2026-2239
C N
MEDIUM 6.5 26.03.2026
CVE-2026-2272
C N
MEDIUM 6.5 26.03.2026
CVE-2026-2340
C N
MEDIUM 6.5 27.05.2026
CVE-2026-2436
C N
HIGH 8.2 26.03.2026
CVE-2026-2443
C N
MEDIUM 5.3 13.02.2026
CVE-2026-2625
C N
MEDIUM 5.5 03.04.2026
CVE-2026-2708
C N
MEDIUM 5.3 23.04.2026
CVE-2026-28368
C N
CRITICAL 9.1 27.03.2026
CVE-2026-28369
C N
CRITICAL 9.1 27.03.2026
CVE-2026-3012
C N
MEDIUM 6.8 27.05.2026
CVE-2026-3099
C N
HIGH 7.3 12.03.2026
CVE-2026-31431
C N
HIGH 7.8 22.04.2026
CVE-2026-3260
C N
HIGH 7.5 24.03.2026
CVE-2026-33845
C N
CRITICAL 9.1 30.04.2026
CVE-2026-34000
C N
CRITICAL 9.1 05.05.2026
CVE-2026-34002
C N
CRITICAL 9.1 05.05.2026
CVE-2026-3441
C N
HIGH 7.1 16.03.2026
CVE-2026-3442
C N
HIGH 7.1 16.03.2026
CVE-2026-34486
C N
HIGH 7.5 09.04.2026
CVE-2026-3497
C N
HIGH 7.5 12.03.2026
CVE-2026-35091
C N
HIGH 8.2 01.04.2026
CVE-2026-35092
C N
HIGH 7.5 01.04.2026
CVE-2026-3632
C N
MEDIUM 5.5 17.03.2026
CVE-2026-3633
C N
MEDIUM 6.5 17.03.2026
CVE-2026-3634
C N
MEDIUM 6.5 17.03.2026
CVE-2026-3832
C N
LOW 3.7 30.04.2026
CVE-2026-3833
C N
HIGH 7.4 30.04.2026
CVE-2026-40915
C N
HIGH 7.8 15.04.2026
CVE-2026-40916
C N
MEDIUM 5.5 15.04.2026
CVE-2026-40917
C N
HIGH 7.1 15.04.2026
CVE-2026-40918
C N
MEDIUM 5.5 15.04.2026
CVE-2026-40919
C N
MEDIUM 5.5 15.04.2026
CVE-2026-42010
C N
CRITICAL 9.8 07.05.2026
CVE-2026-42055
C N
HIGH 8.1 17.06.2026
CVE-2026-42170
C N
HIGH 7.8 08.08.2026
CVE-2026-4271
C N
HIGH 7.5 17.03.2026
CVE-2026-4408
C N
CRITICAL 9.8 28.05.2026
CVE-2026-4424
C N
HIGH 7.5 19.03.2026
CVE-2026-4426
C N
MEDIUM 6.5 19.03.2026
CVE-2026-4480
C N
CRITICAL 9.8 26.05.2026
CVE-2026-4647
C N
MEDIUM 6.1 23.03.2026
CVE-2026-46625
C N
HIGH 7.5 10.06.2026
CVE-2026-4775
C N
HIGH 7.8 24.03.2026
CVE-2026-4878
C N
HIGH 7.0 09.04.2026
CVE-2026-48864
C N
HIGH 7.8 26.05.2026
CVE-2026-4897
C N
MEDIUM 5.5 26.03.2026
CVE-2026-50256
C N
HIGH 7.8 05.06.2026
CVE-2026-50257
C N
HIGH 7.8 05.06.2026
CVE-2026-50258
C N
HIGH 7.8 05.06.2026
CVE-2026-50259
C N
HIGH 7.8 05.06.2026
CVE-2026-50260
C N
HIGH 7.8 05.06.2026
CVE-2026-50261
C N
HIGH 7.8 05.06.2026
CVE-2026-50262
C N
MEDIUM 5.5 05.06.2026
CVE-2026-50263
C N
MEDIUM 5.5 05.06.2026
CVE-2026-50264
C N
HIGH 7.8 05.06.2026
CVE-2026-5119
C N
HIGH 8.2 30.03.2026
CVE-2026-5121
C N
HIGH 7.5 30.03.2026
CVE-2026-5164
C N
MEDIUM 5.5 30.03.2026
CVE-2026-5165
C N
HIGH 7.8 30.03.2026
CVE-2026-5201
C N
HIGH 7.5 31.03.2026
CVE-2026-53000
C N
HIGH 7.8 24.06.2026
CVE-2026-53002
C N
CRITICAL 9.8 24.06.2026
CVE-2026-53006
C N
CRITICAL 9.8 24.06.2026
CVE-2026-53009
C N
HIGH 7.8 24.06.2026
CVE-2026-53145
C N
HIGH 7.8 25.06.2026
CVE-2026-55653
C N
MEDIUM 6.5 23.06.2026
CVE-2026-55654
C N
LOW 3.7 23.06.2026
CVE-2026-55655
C N
MEDIUM 6.1 23.06.2026
CVE-2026-5673
C N
HIGH 7.1 06.04.2026
CVE-2026-5704
C N
MEDIUM 5.5 06.04.2026
CVE-2026-5745
C N
MEDIUM 5.5 07.04.2026
CVE-2026-57965
C N
MEDIUM 5.1 29.06.2026
CVE-2026-57966
C N
MEDIUM 4.4 29.06.2026
CVE-2026-58010
C N
HIGH 8.2 30.06.2026
CVE-2026-58011
C N
HIGH 7.5 30.06.2026
CVE-2026-58012
C N
HIGH 8.2 30.06.2026
CVE-2026-58013
C N
HIGH 8.2 30.06.2026
CVE-2026-58014
C N
HIGH 8.6 30.06.2026
CVE-2026-58015
C N
HIGH 7.5 30.06.2026
CVE-2026-58016
C N
CRITICAL 9.1 30.06.2026
CVE-2026-58380
C N
HIGH 7.8 06.07.2026
CVE-2026-58381
C N
HIGH 7.3 02.07.2026
CVE-2026-58384
C N
HIGH 7.8 07.07.2026
CVE-2026-59087
C N
HIGH 7.8 10.08.2026
CVE-2026-59088
C N
MEDIUM 5.5 10.08.2026
CVE-2026-59089
C N
MEDIUM 5.5 06.07.2026
CVE-2026-59090
C N
CRITICAL 9.9 10.08.2026
CVE-2026-59091
C N
HIGH 7.8 10.08.2026
CVE-2026-59843
C N
MEDIUM 6.5 21.07.2026
CVE-2026-59844
C N
MEDIUM 6.5 21.07.2026
CVE-2026-59845
C N
MEDIUM 5.9 21.07.2026
CVE-2026-59846
C N
LOW 3.9 21.07.2026
CVE-2026-59847
C N
HIGH 7.5 21.07.2026
CVE-2026-59848
C N
MEDIUM 5.3 21.07.2026
CVE-2026-59850
C N
HIGH 7.5 21.07.2026
CVE-2026-6245
C N
MEDIUM 5.5 15.04.2026
CVE-2026-6384
C N
HIGH 7.8 15.04.2026
CVE-2026-66337
C N
MEDIUM 6.5 24.07.2026
CVE-2026-66338
C N
HIGH 7.2 24.07.2026
CVE-2026-66339
C N
MEDIUM 6.5 24.07.2026
CVE-2026-66757
C N
MEDIUM 5.5 27.07.2026
CVE-2026-66758
C N
HIGH 7.8 27.07.2026
CVE-2026-66759
C N
HIGH 7.1 27.07.2026
CVE-2026-6694
C N
MEDIUM 5.5 03.08.2026
CVE-2026-6695
C N
MEDIUM 5.5 03.08.2026
CVE-2026-6732
C N
HIGH 7.5 23.04.2026
CVE-2026-6843
C N
MEDIUM 5.5 22.04.2026
CVE-2026-6844
C N
MEDIUM 5.5 22.04.2026
CVE-2026-6845
C N
MEDIUM 5.0 22.04.2026
CVE-2026-6846
C N
HIGH 7.8 22.04.2026
CVE-2026-68742
C N
MEDIUM 5.5 03.08.2026
CVE-2026-68743
C N
HIGH 7.1 04.08.2026
CVE-2026-68744
C N
LOW 3.3 04.08.2026
CVE-2026-71219
C N
MEDIUM 4.7 03.09.2026
CVE-2026-71220
C N
HIGH 7.0 03.09.2026
CVE-2026-71221
C N
HIGH 7.0 03.09.2026
CVE-2026-71222
C N
MEDIUM 6.3 03.09.2026
CVE-2026-71224
C N
MEDIUM 4.7 03.09.2026
CVE-2026-71225
C N
MEDIUM 6.5 05.08.2026
CVE-2026-71226
C N
HIGH 7.3 05.08.2026
CVE-2026-71227
C N
MEDIUM 5.1 05.08.2026
CVE-2026-73196
C N
MEDIUM 6.5 20.08.2026
CVE-2026-73197
C N
HIGH 7.5 20.08.2026
CVE-2026-73198
C N
HIGH 7.5 20.08.2026
CVE-2026-73433
C N
MEDIUM 6.6 12.08.2026
CVE-2026-73434
C N
MEDIUM 6.1 12.08.2026
CVE-2026-73583
C N
MEDIUM 6.6 13.08.2026
CVE-2026-73584
C N
MEDIUM 6.3 13.08.2026
CVE-2026-73585
C N
MEDIUM 6.3 13.08.2026
CVE-2026-78475
C N
MEDIUM 6.1 24.08.2026
CVE-2026-80101
C N
MEDIUM 4.4 25.08.2026
CVE-2026-82324
C N
MEDIUM 6.1 28.08.2026
CVE-2026-82328
C N
MEDIUM 6.1 28.08.2026
CVE-2026-82330
C N
MEDIUM 6.1 28.08.2026
CVE-2026-82343
C N
MEDIUM 6.1 28.08.2026
CVE-2026-9064
C N
HIGH 7.5 20.05.2026
CVE-2026-9149
C N
MEDIUM 6.5 21.05.2026
CVE-2026-9150
C N
MEDIUM 6.5 20.05.2026
CVE-2026-9256
C N
HIGH 8.1 22.05.2026
Showing 5 out of 542.

Cross-references

No references are available for this certificate.

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 5022,
  "dgst": "6eef362598bc0d76",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES-ECBA4994",
        "ECDSA SigVer (FIPS186-5)A4987",
        "#A4991",
        "SHA2-224A4987",
        "RSA SigVer (FIPS186-5)A4987",
        "#A5559",
        "RSA KeyGen (FIPS186-5)A4987",
        "HMAC-SHA-1A4987",
        "RSA SigGen (FIPS186-5)A4987",
        "HMAC-SHA2-512A4987",
        "ECDSA SigGen (FIPS186-5)A4987",
        "#A4994",
        "#A4993",
        "ECDSA KeyGen (FIPS186-5)A4987",
        "AES-KWPA4993",
        "#A4986",
        "RSA SigVer (FIPS186-2)A4987",
        "AES-CTRA4994",
        "AES-CBC-CS1A4992",
        "HMAC-SHA2-256A4987",
        "KDF IKEv2A4991",
        "#A4987",
        "KDF SP800-108A4990",
        "AES-CMACA4989",
        "#A4990",
        "SHA2-256A4987",
        "HMAC-SHA2-384A4987",
        "KAS-ECC-SSC Sp800-56Ar3A4987",
        "RSA SigVer (FIPS186-4)A4987",
        "AES-CBCA4994",
        "KDA HKDF Sp800-56Cr1A4986",
        "KAS-FFC-SSC Sp800-56Ar3A4987",
        "#A4992",
        "SHA2-512A4987",
        "HMAC-SHA2-224A4987",
        "AES-GCMA5559",
        "AES-KWA4993",
        "#A4989",
        "SHA2-384A4987",
        "PBKDFA4987",
        "Safe Primes Key GenerationA4987",
        "TLS v1.2 KDF RFC7627A4987",
        "#A4988",
        "Hash DRBGA4987"
      ]
    },
    "cpe_matches": {
      "_type": "Set",
      "elements": [
        "cpe:2.3:o:redhat:enterprise_linux:9.1:*:*:*:*:*:*:*",
        "cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*"
      ]
    },
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "9"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": {
      "_type": "Set",
      "elements": [
        "CVE-2022-24808",
        "CVE-2026-50258",
        "CVE-2023-4641",
        "CVE-2024-0409",
        "CVE-2025-2784",
        "CVE-2024-0914",
        "CVE-2026-71222",
        "CVE-2026-5673",
        "CVE-2023-2513",
        "CVE-2023-6546",
        "CVE-2022-4285",
        "CVE-2022-2509",
        "CVE-2023-5156",
        "CVE-2023-4273",
        "CVE-2023-2194",
        "CVE-2024-12087",
        "CVE-2026-71226",
        "CVE-2023-4535",
        "CVE-2022-3821",
        "CVE-2026-1536",
        "CVE-2024-12086",
        "CVE-2023-2731",
        "CVE-2025-62230",
        "CVE-2022-4132",
        "CVE-2022-2873",
        "CVE-2026-59088",
        "CVE-2023-40549",
        "CVE-2024-12088",
        "CVE-2026-58384",
        "CVE-2025-8283",
        "CVE-2024-0553",
        "CVE-2023-2295",
        "CVE-2023-1652",
        "CVE-2026-59090",
        "CVE-2026-11770",
        "CVE-2022-1462",
        "CVE-2022-1355",
        "CVE-2023-3640",
        "CVE-2023-2977",
        "CVE-2024-45616",
        "CVE-2026-71220",
        "CVE-2021-35937",
        "CVE-2023-38473",
        "CVE-2026-5704",
        "CVE-2026-5745",
        "CVE-2026-12892",
        "CVE-2023-3347",
        "CVE-2023-4527",
        "CVE-2022-3715",
        "CVE-2026-53009",
        "CVE-2022-3560",
        "CVE-2026-5165",
        "CVE-2023-2283",
        "CVE-2026-66758",
        "CVE-2026-18726",
        "CVE-2022-2153",
        "CVE-2025-26595",
        "CVE-2024-45782",
        "CVE-2023-4010",
        "CVE-2026-1801",
        "CVE-2023-7192",
        "CVE-2023-48795",
        "CVE-2026-42170",
        "CVE-2023-4813",
        "CVE-2025-26600",
        "CVE-2023-40547",
        "CVE-2026-12528",
        "CVE-2025-12801",
        "CVE-2023-1667",
        "CVE-2024-45777",
        "CVE-2026-82330",
        "CVE-2022-1247",
        "CVE-2026-19654",
        "CVE-2026-4775",
        "CVE-2026-58013",
        "CVE-2026-2340",
        "CVE-2023-6917",
        "CVE-2023-50781",
        "CVE-2024-1454",
        "CVE-2026-35091",
        "CVE-2026-50257",
        "CVE-2026-6843",
        "CVE-2024-45618",
        "CVE-2026-50259",
        "CVE-2023-5557",
        "CVE-2026-71225",
        "CVE-2022-0168",
        "CVE-2026-13595",
        "CVE-2025-46397",
        "CVE-2026-55653",
        "CVE-2026-82343",
        "CVE-2026-3099",
        "CVE-2023-38470",
        "CVE-2026-11820",
        "CVE-2023-4693",
        "CVE-2023-0179",
        "CVE-2026-73434",
        "CVE-2023-1192",
        "CVE-2026-0989",
        "CVE-2024-12085",
        "CVE-2026-48864",
        "CVE-2022-1586",
        "CVE-2026-33845",
        "CVE-2023-6681",
        "CVE-2026-28368",
        "CVE-2023-4387",
        "CVE-2022-2211",
        "CVE-2022-0171",
        "CVE-2021-3697",
        "CVE-2025-9784",
        "CVE-2026-50263",
        "CVE-2023-6622",
        "CVE-2023-40661",
        "CVE-2023-5868",
        "CVE-2023-4459",
        "CVE-2026-55654",
        "CVE-2026-4897",
        "CVE-2024-0646",
        "CVE-2021-3864",
        "CVE-2026-34000",
        "CVE-2023-5178",
        "CVE-2026-2443",
        "CVE-2022-1354",
        "CVE-2025-6021",
        "CVE-2023-39198",
        "CVE-2023-51767",
        "CVE-2023-0361",
        "CVE-2026-12891",
        "CVE-2026-68742",
        "CVE-2023-4155",
        "CVE-2023-4692",
        "CVE-2023-6918",
        "CVE-2022-1789",
        "CVE-2026-19548",
        "CVE-2023-6683",
        "CVE-2022-0987",
        "CVE-2024-0562",
        "CVE-2024-5742",
        "CVE-2025-32988",
        "CVE-2026-4408",
        "CVE-2026-57966",
        "CVE-2026-2436",
        "CVE-2023-4004",
        "CVE-2023-38201",
        "CVE-2026-66759",
        "CVE-2023-43785",
        "CVE-2023-39191",
        "CVE-2022-2964",
        "CVE-2023-1729",
        "CVE-2023-3576",
        "CVE-2023-3618",
        "CVE-2025-5318",
        "CVE-2024-23301",
        "CVE-2022-25310",
        "CVE-2026-73198",
        "CVE-2022-1158",
        "CVE-2026-0968",
        "CVE-2026-73584",
        "CVE-2021-3839",
        "CVE-2023-2156",
        "CVE-2026-0965",
        "CVE-2023-5633",
        "CVE-2026-53000",
        "CVE-2025-26599",
        "CVE-2023-46847",
        "CVE-2023-39193",
        "CVE-2016-7091",
        "CVE-2023-5217",
        "CVE-2023-6004",
        "CVE-2025-26598",
        "CVE-2026-73196",
        "CVE-2026-11861",
        "CVE-2026-18727",
        "CVE-2023-2603",
        "CVE-2026-53006",
        "CVE-2026-59091",
        "CVE-2023-4194",
        "CVE-2026-58012",
        "CVE-2025-9572",
        "CVE-2023-6535",
        "CVE-2022-1198",
        "CVE-2024-44070",
        "CVE-2026-40919",
        "CVE-2024-9341",
        "CVE-2023-4133",
        "CVE-2026-6384",
        "CVE-2026-6694",
        "CVE-2022-1708",
        "CVE-2026-1467",
        "CVE-2026-18477",
        "CVE-2026-9064",
        "CVE-2022-2639",
        "CVE-2023-3567",
        "CVE-2023-0664",
        "CVE-2026-1933",
        "CVE-2024-1488",
        "CVE-2023-3161",
        "CVE-2023-39418",
        "CVE-2026-53002",
        "CVE-2026-55655",
        "CVE-2024-49394",
        "CVE-2023-38472",
        "CVE-2023-43789",
        "CVE-2022-1852",
        "CVE-2023-46846",
        "CVE-2023-1073",
        "CVE-2025-26594",
        "CVE-2025-4598",
        "CVE-2022-1706",
        "CVE-2026-11791",
        "CVE-2026-18728",
        "CVE-2023-40745",
        "CVE-2022-3424",
        "CVE-2022-4283",
        "CVE-2023-52356",
        "CVE-2021-3997",
        "CVE-2023-1513",
        "CVE-2023-3772",
        "CVE-2026-14969",
        "CVE-2026-40915",
        "CVE-2024-50074",
        "CVE-2026-9256",
        "CVE-2024-9675",
        "CVE-2023-1206",
        "CVE-2023-3269",
        "CVE-2026-3497",
        "CVE-2023-2019",
        "CVE-2024-45617",
        "CVE-2026-58015",
        "CVE-2023-34967",
        "CVE-2023-32233",
        "CVE-2023-5869",
        "CVE-2026-5164",
        "CVE-2023-5380",
        "CVE-2023-40550",
        "CVE-2023-6356",
        "CVE-2026-5119",
        "CVE-2023-42754",
        "CVE-2024-45615",
        "CVE-2023-39189",
        "CVE-2025-26465",
        "CVE-2026-50256",
        "CVE-2024-6237",
        "CVE-2026-42010",
        "CVE-2023-39194",
        "CVE-2023-34968",
        "CVE-2026-50260",
        "CVE-2026-12549",
        "CVE-2026-71221",
        "CVE-2023-50782",
        "CVE-2024-2496",
        "CVE-2023-34966",
        "CVE-2022-25308",
        "CVE-2023-3773",
        "CVE-2026-58011",
        "CVE-2023-6915",
        "CVE-2026-0967",
        "CVE-2026-50261",
        "CVE-2021-4204",
        "CVE-2026-6695",
        "CVE-2023-6531",
        "CVE-2023-6606",
        "CVE-2022-1016",
        "CVE-2022-4900",
        "CVE-2026-4647",
        "CVE-2026-82324",
        "CVE-2022-4904",
        "CVE-2026-14940",
        "CVE-2023-5824",
        "CVE-2023-43786",
        "CVE-2026-4271",
        "CVE-2026-11790",
        "CVE-2023-42756",
        "CVE-2023-42753",
        "CVE-2026-3441",
        "CVE-2022-0934",
        "CVE-2022-1949",
        "CVE-2023-3255",
        "CVE-2026-0966",
        "CVE-2023-5367",
        "CVE-2026-6844",
        "CVE-2025-62231",
        "CVE-2025-14512",
        "CVE-2026-2708",
        "CVE-2024-0564",
        "CVE-2024-0841",
        "CVE-2023-1380",
        "CVE-2026-71227",
        "CVE-2022-3707",
        "CVE-2023-5870",
        "CVE-2023-2491",
        "CVE-2024-45778",
        "CVE-2026-59087",
        "CVE-2023-33203",
        "CVE-2023-40551",
        "CVE-2023-33952",
        "CVE-2024-0690",
        "CVE-2026-0992",
        "CVE-2026-3634",
        "CVE-2022-24806",
        "CVE-2023-2680",
        "CVE-2022-2078",
        "CVE-2026-59089",
        "CVE-2022-1587",
        "CVE-2022-24809",
        "CVE-2022-34301",
        "CVE-2023-46848",
        "CVE-2022-0480",
        "CVE-2023-3164",
        "CVE-2026-71224",
        "CVE-2023-28327",
        "CVE-2022-2850",
        "CVE-2026-19550",
        "CVE-2024-7006",
        "CVE-2025-26596",
        "CVE-2026-73433",
        "CVE-2026-71219",
        "CVE-2026-9149",
        "CVE-2025-46400",
        "CVE-2026-0990",
        "CVE-2026-53145",
        "CVE-2023-3750",
        "CVE-2026-19617",
        "CVE-2024-3049",
        "CVE-2023-5090",
        "CVE-2026-58010",
        "CVE-2024-3056",
        "CVE-2024-0641",
        "CVE-2025-5917",
        "CVE-2026-13757",
        "CVE-2026-1539",
        "CVE-2023-43788",
        "CVE-2023-1981",
        "CVE-2025-32989",
        "CVE-2022-1263",
        "CVE-2024-0639",
        "CVE-2026-4426",
        "CVE-2022-1652",
        "CVE-2023-38559",
        "CVE-2026-11786",
        "CVE-2023-32373",
        "CVE-2026-6846",
        "CVE-2026-11789",
        "CVE-2026-66338",
        "CVE-2026-11785",
        "CVE-2024-8443",
        "CVE-2024-0408",
        "CVE-2026-59844",
        "CVE-2023-3972",
        "CVE-2024-49395",
        "CVE-2022-3500",
        "CVE-2023-2700",
        "CVE-2026-66339",
        "CVE-2023-5871",
        "CVE-2025-46399",
        "CVE-2025-5915",
        "CVE-2025-26597",
        "CVE-2025-31277",
        "CVE-2022-24805",
        "CVE-2026-4480",
        "CVE-2026-11611",
        "CVE-2023-5992",
        "CVE-2023-6536",
        "CVE-2026-13601",
        "CVE-2026-15041",
        "CVE-2023-39417",
        "CVE-2026-3633",
        "CVE-2023-33951",
        "CVE-2026-59846",
        "CVE-2026-2100",
        "CVE-2026-46625",
        "CVE-2026-66337",
        "CVE-2023-44487",
        "CVE-2022-24807",
        "CVE-2021-4158",
        "CVE-2026-3832",
        "CVE-2026-59845",
        "CVE-2023-6679",
        "CVE-2021-4217",
        "CVE-2025-7424",
        "CVE-2026-58016",
        "CVE-2022-40982",
        "CVE-2025-32990",
        "CVE-2023-50387",
        "CVE-2024-0443",
        "CVE-2024-45619",
        "CVE-2024-45620",
        "CVE-2025-0678",
        "CVE-2026-5121",
        "CVE-2026-58380",
        "CVE-2026-6845",
        "CVE-2025-14087",
        "CVE-2024-49393",
        "CVE-2021-35938",
        "CVE-2023-5157",
        "CVE-2024-0229",
        "CVE-2026-28369",
        "CVE-2023-2203",
        "CVE-2026-1766",
        "CVE-2026-73585",
        "CVE-2020-14394",
        "CVE-2023-52160",
        "CVE-2026-59850",
        "CVE-2026-15722",
        "CVE-2023-6240",
        "CVE-2026-35092",
        "CVE-2026-9150",
        "CVE-2023-51764",
        "CVE-2022-2625",
        "CVE-2024-0775",
        "CVE-2022-3787",
        "CVE-2026-13002",
        "CVE-2026-59847",
        "CVE-2023-3354",
        "CVE-2023-0494",
        "CVE-2024-8354",
        "CVE-2025-5351",
        "CVE-2022-2132",
        "CVE-2023-52355",
        "CVE-2026-1764",
        "CVE-2022-2393",
        "CVE-2026-73583",
        "CVE-2021-3696",
        "CVE-2026-3833",
        "CVE-2023-32573",
        "CVE-2023-5088",
        "CVE-2023-5215",
        "CVE-2023-4806",
        "CVE-2024-1048",
        "CVE-2021-3695",
        "CVE-2023-5455",
        "CVE-2024-0217",
        "CVE-2024-6505",
        "CVE-2026-1767",
        "CVE-2022-1184",
        "CVE-2023-4569",
        "CVE-2026-3012",
        "CVE-2024-0232",
        "CVE-2022-2963",
        "CVE-2023-3019",
        "CVE-2023-38469",
        "CVE-2026-0964",
        "CVE-2025-3891",
        "CVE-2026-1709",
        "CVE-2024-1151",
        "CVE-2022-34303",
        "CVE-2023-6610",
        "CVE-2023-7216",
        "CVE-2026-82328",
        "CVE-2023-3212",
        "CVE-2022-34302",
        "CVE-2023-38200",
        "CVE-2024-3567",
        "CVE-2025-47711",
        "CVE-2026-40916",
        "CVE-2026-59848",
        "CVE-2022-2990",
        "CVE-2023-40546",
        "CVE-2026-18651",
        "CVE-2026-18508",
        "CVE-2023-44488",
        "CVE-2023-51765",
        "CVE-2026-3260",
        "CVE-2022-25309",
        "CVE-2026-40917",
        "CVE-2026-59843",
        "CVE-2026-50262",
        "CVE-2026-73197",
        "CVE-2025-7519",
        "CVE-2023-2454",
        "CVE-2023-27561",
        "CVE-2022-2989",
        "CVE-2026-50264",
        "CVE-2023-2602",
        "CVE-2026-6245",
        "CVE-2023-4001",
        "CVE-2026-68743",
        "CVE-2023-41175",
        "CVE-2026-66757",
        "CVE-2026-3442",
        "CVE-2025-26601",
        "CVE-2023-42669",
        "CVE-2026-31431",
        "CVE-2025-5916",
        "CVE-2023-1672",
        "CVE-2023-2455",
        "CVE-2026-12725",
        "CVE-2026-78475",
        "CVE-2026-11787",
        "CVE-2026-11788",
        "CVE-2026-34486",
        "CVE-2026-4878",
        "CVE-2023-47038",
        "CVE-2023-3301",
        "CVE-2026-2625",
        "CVE-2023-40660",
        "CVE-2026-57965",
        "CVE-2023-3899",
        "CVE-2026-6732",
        "CVE-2024-9676",
        "CVE-2025-5372",
        "CVE-2023-4147",
        "CVE-2026-2239",
        "CVE-2026-2272",
        "CVE-2026-68744",
        "CVE-2026-5201",
        "CVE-2023-3812",
        "CVE-2022-2127",
        "CVE-2023-1095",
        "CVE-2025-3155",
        "CVE-2026-58381",
        "CVE-2024-0607",
        "CVE-2023-6693",
        "CVE-2023-3138",
        "CVE-2026-40918",
        "CVE-2023-6176",
        "CVE-2022-4743",
        "CVE-2025-5918",
        "CVE-2025-6170",
        "CVE-2023-4911",
        "CVE-2025-5914",
        "CVE-2026-80101",
        "CVE-2026-4424",
        "CVE-2026-3632",
        "CVE-2026-58014",
        "CVE-2023-1183",
        "CVE-2023-43787",
        "CVE-2023-1289",
        "CVE-2022-1998",
        "CVE-2023-0778",
        "CVE-2023-38471",
        "CVE-2023-6121",
        "CVE-2023-6710",
        "CVE-2026-13097",
        "CVE-2026-42055",
        "CVE-2023-2953",
        "CVE-2026-34002",
        "CVE-2024-6387",
        "CVE-2023-7250",
        "CVE-2026-21710",
        "CVE-2026-1940",
        "CVE-2024-6239"
      ]
    },
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "br1_deviations": 0,
    "br1_tables": {
      "_type": "sec_certs.heuristics.br1.table_parsing.model.br1_tables.BR1Tables",
      "approved_algorithms": {
        "entries": [
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A4987",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CBC",
            "cavpCertName": "A4994",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CBC-CS1",
            "cavpCertName": "A4992",
            "properties": "Direction - decrypt, encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CMAC",
            "cavpCertName": "A4989",
            "properties": "Direction - Generation, Verification Key Length - 128, 192, 256",
            "reference": "SP 800-38B"
          },
          {
            "algorithm": "AES-CTR",
            "cavpCertName": "A4987",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-CTR",
            "cavpCertName": "A4994",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-ECB",
            "cavpCertName": "A4987",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-ECB",
            "cavpCertName": "A4994",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38A"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A4987",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal IV Generation Mode - 8.2.1, 8.2.2 Key Length - 128, 192, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A4994",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal IV Generation Mode - 8.2.1, 8.2.2 Key Length - 128, 192, 256",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-GCM",
            "cavpCertName": "A5559",
            "properties": "Direction - Decrypt, Encrypt IV Generation - External, Internal Key Length - 128, 192, 256 IV Generation Mode - 8.2.1",
            "reference": "SP 800-38D"
          },
          {
            "algorithm": "AES-KW",
            "cavpCertName": "A4988",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38F"
          },
          {
            "algorithm": "AES-KW",
            "cavpCertName": "A4993",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38F"
          },
          {
            "algorithm": "AES-KWP",
            "cavpCertName": "A4988",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38F"
          },
          {
            "algorithm": "AES-KWP",
            "cavpCertName": "A4993",
            "properties": "Direction - Decrypt, Encrypt Key Length - 128, 192, 256",
            "reference": "SP 800-38F"
          },
          {
            "algorithm": "ECDSA KeyGen (FIPS186-5)",
            "cavpCertName": "A4987",
            "properties": "Curve - P-256, P-384, P-521 Secret Generation Mode - testing candidates",
            "reference": "FIPS 186-5"
          },
          {
            "algorithm": "ECDSA SigGen (FIPS186-5)",
            "cavpCertName": "A4987",
            "properties": "Curve - P-256, P-384, P-521 Component - No Hash Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2- 512",
            "reference": "FIPS 186-5"
          },
          {
            "algorithm": "ECDSA SigVer (FIPS186-5)",
            "cavpCertName": "A4987",
            "properties": "Curve - P-256, P-384, P-521 Hash Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2- 512",
            "reference": "FIPS 186-5"
          },
          {
            "algorithm": "Hash DRBG",
            "cavpCertName": "A4987",
            "properties": "Prediction Resistance - No, Yes Mode - SHA2-256",
            "reference": "SP 800-90A Rev. 1"
          },
          {
            "algorithm": "HMAC-SHA-1",
            "cavpCertName": "A4987",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 224",
            "cavpCertName": "A4987",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 256",
            "cavpCertName": "A4987",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 384",
            "cavpCertName": "A4987",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "HMAC-SHA2- 512",
            "cavpCertName": "A4987",
            "properties": "Key Length - Key Length: 112-524288 Increment 8",
            "reference": "FIPS 198-1"
          },
          {
            "algorithm": "KAS-ECC-SSC Sp800-56Ar3",
            "cavpCertName": "A4987",
            "properties": "Domain Parameter Generation Methods - P-256, P-384, P-521 Scheme - ephemeralUnified - KAS Role - initiator, responder",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "KAS-FFC-SSC Sp800-56Ar3",
            "cavpCertName": "A4987",
            "properties": "Domain Parameter Generation Methods - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, MODP-2048, MODP-3072, MODP-4096, MODP-6144, MODP-8192 Scheme -",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "",
            "cavpCertName": "",
            "properties": "dhEphem - KAS Role - initiator, responder",
            "reference": ""
          },
          {
            "algorithm": "KDA HKDF Sp800-56Cr1",
            "cavpCertName": "A4986",
            "properties": "Derived Key Length - 2048 Shared Secret Length - Shared Secret Length: 224-65336 Increment 8 HMAC Algorithm - SHA2-224, SHA2-256, SHA2-384, SHA2- 512",
            "reference": "SP 800-56C Rev. 2"
          },
          {
            "algorithm": "KDF IKEv2 (CVL)",
            "cavpCertName": "A4991",
            "properties": "Diffie-Hellman Shared Secret Length - Diffie-Hellman Shared Secret Length: 224, 2048, 8192 Derived Keying Material Length - Derived Keying Material Length: 1056, 3072 Hash Algorithm - SHA-1, SHA2-256, SHA2-384, SHA2-512",
            "reference": "SP 800-135 Rev. 1"
          },
          {
            "algorithm": "KDF SP800-108",
            "cavpCertName": "A4990",
            "properties": "KDF Mode - Counter, Double Pipeline Iteration, Feedback Supported Lengths - Supported Lengths: 8, 72, 128, 776, 3456, 4096",
            "reference": "SP 800-108 Rev. 1"
          },
          {
            "algorithm": "PBKDF",
            "cavpCertName": "A4987",
            "properties": "Iteration Count - Iteration Count: 1000-10000 Increment 1 Password Length - Password Length: 8-128 Increment 1",
            "reference": "SP 800-132"
          },
          {
            "algorithm": "RSA KeyGen (FIPS186-5)",
            "cavpCertName": "A4987",
            "properties": "Key Generation Mode - probable Modulo - 2048, 3072, 4096, 8192 Primality Tests - 2pow100 Private Key Format - standard",
            "reference": "FIPS 186-5"
          },
          {
            "algorithm": "RSA SigGen (FIPS186-5)",
            "cavpCertName": "A4987",
            "properties": "Modulo - 2048, 3072, 4096 Signature Type - pkcs1v1.5, pss",
            "reference": "FIPS 186-5"
          },
          {
            "algorithm": "RSA SigVer (FIPS186-2)",
            "cavpCertName": "A4987",
            "properties": "Signature Type - PKCS 1.5, PKCSPSS Modulo - 1536",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "RSA SigVer (FIPS186-4)",
            "cavpCertName": "A4987",
            "properties": "Signature Type - PKCS 1.5, PKCSPSS Modulo - 1024, 2048, 3072, 4096",
            "reference": "FIPS 186-4"
          },
          {
            "algorithm": "RSA SigVer (FIPS186-5)",
            "cavpCertName": "A4987",
            "properties": "Modulo - 2048, 3072, 4096 Signature Type - pkcs1v1.5, pss",
            "reference": "FIPS 186-5"
          },
          {
            "algorithm": "Safe Primes Key Generation",
            "cavpCertName": "A4987",
            "properties": "Safe Prime Groups - ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192, MODP-2048, MODP-3072, MODP- 4096, MODP-6144, MODP-8192",
            "reference": "SP 800-56A Rev. 3"
          },
          {
            "algorithm": "SHA2-224",
            "cavpCertName": "A4987",
            "properties": "Large Message Sizes - 1, 2, 4, 8 Message Length - Message Length: 0-65536 Increment 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-256",
            "cavpCertName": "A4987",
            "properties": "Large Message Sizes - 1, 2, 4, 8 Message Length - Message Length: 0-65536 Increment 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-384",
            "cavpCertName": "A4987",
            "properties": "Large Message Sizes - 1, 2, 4, 8 Message Length - Message Length: 0-65536 Increment 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "SHA2-512",
            "cavpCertName": "A4987",
            "properties": "Large Message Sizes - 1, 2, 4, 8 Message Length - Message Length: 0-65536 Increment 8",
            "reference": "FIPS 180-4"
          },
          {
            "algorithm": "TLS v1.2 KDF RFC7627 (CVL)",
            "cavpCertName": "A4987",
            "properties": "Hash Algorithm - SHA2-256, SHA2-384, SHA2-512",
            "reference": "SP 800-135 Rev. 1"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "approved_services": {
        "entries": [
          {
            "description": "Encrypt a plaintext",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "AES key, IV, plaintext",
            "name": "Encryption",
            "outputs": "Ciphertext",
            "rolesSspAccess": "Crypto Officer - AES Key: W,E",
            "secFunImpl": "Encryption with AES"
          },
          {
            "description": "Decrypt a ciphertext",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "AES key, IV, ciphertex t",
            "name": "Decryption",
            "outputs": "Plaintext",
            "rolesSspAccess": "Crypto Officer - AES Key: W,E",
            "secFunImpl": "Decryption with AES"
          },
          {
            "description": "Encrypt a plaintext",
            "indicator": "CKS_NSS_ FIPS_OK",
            "inputs": "AES key, IV, plaintext",
            "name": "Authenticated Encryption",
            "outputs": "Ciphertext, MAC tag",
            "rolesSspAccess": "Crypto Officer - AES Key: W,E",
            "secFunImpl": "Authenticated Encryption with AES"
          },
          {
            "description": "Decrypt a ciphertext",
            "indicator": "CKS_NSS_ FIPS_OK",
            "inputs": "AES key, IV, MAC tag, ciphertex t",
            "name": "Authenticated Decryption",
            "outputs": "Plaintext or fail",
            "rolesSspAccess": "Crypto Officer - AES Key: W,E",
            "secFunImpl": "Authenticated Decryption with AES"
          },
          {
            "description": "Derive a key from a key- derivation key",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "Key- derivatio n key",
            "name": "Key Derivation from a KDK",
            "outputs": "Derived key",
            "rolesSspAccess": "Crypto Officer - Key- Derivation Key: W,E - Derived Key : G",
            "secFunImpl": "Key Derivation with KBKDF"
          },
          {
            "description": "Derive a key from a shared secret",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "Shared secret",
            "name": "Key Derivation",
            "outputs": "Derived key",
            "rolesSspAccess": "Crypto Officer - Shared Secret: W,E - Derived Key : G",
            "secFunImpl": "Key Derivation with HKDF Key Derivation with TLS 1.2 KDF Key Derivation with IKEv2 KDF"
          },
          {
            "description": "Derive a key from a password",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "Password , salt, iteration count",
            "name": "Password- Based Key Derivation",
            "outputs": "Derived key",
            "rolesSspAccess": "Crypto Officer - Password: W,E - Derived Key : G",
            "secFunImpl": "Key Derivation with PBKDF"
          },
          {
            "description": "Wrap a CSP",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "AES key, any CSP",
            "name": "Key Wrapping",
            "outputs": "Wrapped CSP",
            "rolesSspAccess": "Crypto Officer - AES Key: W,E",
            "secFunImpl": "Key Wrapping with AES"
          },
          {
            "description": "Unwrap a CSP",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "AES key, Wrapped CSP",
            "name": "Key Unwrapping",
            "outputs": "Any CSP",
            "rolesSspAccess": "Crypto Officer - AES Key: W,E",
            "secFunImpl": "Key Unwrapping with AES"
          },
          {
            "description": "Compute a MAC tag",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "HMAC key",
            "name": "Message Authenticatio n",
            "outputs": "MAC tag",
            "rolesSspAccess": "Crypto Officer - HMAC Key : W,E",
            "secFunImpl": "Message Authenticatio n with HMAC"
          },
          {
            "description": "Compute a MAC tag",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "AES key",
            "name": "Message Authenticatio n with AES",
            "outputs": "MAC tag",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "Message Authenticatio n with CMAC"
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "- AES Key: W,E",
            "secFunImpl": ""
          },
          {
            "description": "Compute a message digest",
            "indicator": "CKS_NSS_FIPS_O K (1)",
            "inputs": "Message",
            "name": "Message Digest",
            "outputs": "Digest value",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "Message Digest with SHA"
          },
          {
            "description": "Generate random bytes",
            "indicator": "CKR_OK",
            "inputs": "Output length",
            "name": "Random Number Generation",
            "outputs": "Random bytes",
            "rolesSspAccess": "Crypto Officer - Entropy Input : W,E - DRBG Seed : G,E - Internal State (V, C) : G,W,E",
            "secFunImpl": "Random Number Generation with Hash_DRBG"
          },
          {
            "description": "Compute a shared secret",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "DH private key (owner), DH public key (peer)",
            "name": "Shared Secret Computation with DH",
            "outputs": "Shared secret",
            "rolesSspAccess": "Crypto Officer - DH Private Key : W,E - DH Public Key : W,E - Shared Secret: G",
            "secFunImpl": "Shared Secret Computation with KAS- FFC-SSC"
          },
          {
            "description": "Compute a shared secret",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "EC private key (owner), EC public key (peer)",
            "name": "Shared Secret Computation with ECC",
            "outputs": "Shared secret",
            "rolesSspAccess": "Crypto Officer - EC Private Key : W,E - EC Public Key: W,E - Shared Secret: G",
            "secFunImpl": "Shared Secret Computation with KAS- ECC-SSC"
          },
          {
            "description": "Generate a signature",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "RSA private key, message",
            "name": "Signature Generation with RSA",
            "outputs": "Signature",
            "rolesSspAccess": "Crypto Officer - RSA Private Key : W,E",
            "secFunImpl": "Signature Generation with RSA"
          },
          {
            "description": "Generate a signature",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "EC private",
            "name": "Signature Generation with ECDSA",
            "outputs": "Signature",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "Signature Generation with ECDSA"
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "key, message",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "- EC Private Key : W,E",
            "secFunImpl": ""
          },
          {
            "description": "Verify a signature",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "RSA public key, message, signature",
            "name": "Signature Verification with RSA",
            "outputs": "Pass/fail",
            "rolesSspAccess": "Crypto Officer - RSA Public Key: W,E",
            "secFunImpl": "Signature Verification with RSA"
          },
          {
            "description": "Verify a signature",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "EC public key, message, signature",
            "name": "Signature Verification with ECDSA",
            "outputs": "Pass/fail",
            "rolesSspAccess": "Crypto Officer - EC Public Key: W,E",
            "secFunImpl": "Signature Verification with ECDSA"
          },
          {
            "description": "Generate a key pair",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "Group",
            "name": "Key Pair Generation with Safe Primes",
            "outputs": "DH public key, DH private key",
            "rolesSspAccess": "Crypto Officer - DH Private Key : G - DH Public Key : G - Intermediat e key generation value : G,E,Z",
            "secFunImpl": "Key Pair Generation with Safe Primes"
          },
          {
            "description": "Generate a key pair",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "Modulus bits",
            "name": "Key Pair Generation with RSA",
            "outputs": "RSA public key, RSA private key",
            "rolesSspAccess": "Crypto Officer - RSA Private Key : G - RSA Public Key: G - Intermediat e key generation value : G,E,Z",
            "secFunImpl": "Key Pair Generation with RSA"
          },
          {
            "description": "Generate a key pair",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "Curve",
            "name": "Key Pair Generation with ECDSA",
            "outputs": "EC public key, EC private key",
            "rolesSspAccess": "Crypto Officer - EC Private Key : G - EC Public Key: G - Intermediat e key generation value : G,E,Z",
            "secFunImpl": "Key Pair Generation with ECDSA"
          },
          {
            "description": "Generate a secret key",
            "indicator": "CKS_NSS_FIPS_O K",
            "inputs": "Key size",
            "name": "Symmetric Key Generation",
            "outputs": "AES key, HMAC key or key- derivation key",
            "rolesSspAccess": "Crypto Officer - AES Key: G - HMAC Key : G - Key- Derivation Key: G",
            "secFunImpl": "Symmetric Key Generation with Hash_DRBG"
          },
          {
            "description": "Return the module name and version informatio n",
            "indicator": "None",
            "inputs": "N/A",
            "name": "Show Version",
            "outputs": "Module name and version informatio n",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "None"
          },
          {
            "description": "Return the module status",
            "indicator": "None",
            "inputs": "N/A",
            "name": "Show Status",
            "outputs": "Module status",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "None"
          },
          {
            "description": "Perform the CASTs and integrity tests",
            "indicator": "None",
            "inputs": "N/A",
            "name": "Self-Test",
            "outputs": "Pass/fail",
            "rolesSspAccess": "Crypto Officer",
            "secFunImpl": "None"
          },
          {
            "description": "Zeroize all SSPs",
            "indicator": "N/A",
            "inputs": "Any SSP",
            "name": "Zeroization",
            "outputs": "None",
            "rolesSspAccess": "Crypto Officer - AES Key: Z - HMAC",
            "secFunImpl": "None"
          },
          {
            "description": "",
            "indicator": "",
            "inputs": "",
            "name": "",
            "outputs": "",
            "rolesSspAccess": "Key : Z - Key- Derivation Key: Z - Shared Secret: Z - Password: Z - Derived Key : Z - Entropy Input : Z - DRBG Seed : Z - Internal State (V, C) : Z - DH Private Key : Z - DH Public Key : Z - EC Private Key : Z - EC Public Key: Z - RSA Private Key : Z - RSA Public Key: Z - Intermediat e key generation value : Z",
            "secFunImpl": ""
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 3
      },
      "authentication_methods": {
        "entries": [],
        "found": false,
        "section": 4,
        "subsection": 1
      },
      "cond_self_tests": {
        "entries": [
          {
            "algorithmOrTest": "SHA-1 (A4987)",
            "condition": "Module initialization",
            "details": "Message Digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "512-bit message",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA2-224 (A4987)",
            "condition": "Module initialization",
            "details": "Message Digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "512-bit message",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA2-256 (A4987)",
            "condition": "Module initialization",
            "details": "Message Digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "512-bit message",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA2-384 (A4987)",
            "condition": "Module initialization",
            "details": "Message Digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "512-bit message",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "SHA2-512 (A4987)",
            "condition": "Module initialization",
            "details": "Message Digest",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "512-bit message",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA-1 (A4987)",
            "condition": "Module initialization",
            "details": "Message Authentication",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "288-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-224 (A4987)",
            "condition": "Module initialization",
            "details": "Message Authentication",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "288-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-256 (A4987)",
            "condition": "Module initialization",
            "details": "Message Authentication",
            "indicator": "Module becomes operational and",
            "testMethod": "KAT",
            "testProps": "288-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "",
            "condition": "",
            "details": "",
            "indicator": "services are available for use",
            "testMethod": "",
            "testProps": "",
            "type": ""
          },
          {
            "algorithmOrTest": "HMAC- SHA2-384 (A4987)",
            "condition": "Module initialization",
            "details": "Message Authentication",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "288-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "HMAC- SHA2-512 (A4987)",
            "condition": "Module initialization",
            "details": "Message Authentication",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "288-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-ECB (A4987)",
            "condition": "Module initialization",
            "details": "Encryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-ECB (A4987)",
            "condition": "Module initialization",
            "details": "Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-ECB (A4994)",
            "condition": "Module initialization",
            "details": "Encryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-ECB (A4994)",
            "condition": "Module initialization",
            "details": "Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A4987)",
            "condition": "Module initialization",
            "details": "Encryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A4987)",
            "condition": "Module initialization",
            "details": "Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A4994)",
            "condition": "Module initialization",
            "details": "Encryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CBC (A4994)",
            "condition": "Module initialization",
            "details": "Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A4987)",
            "condition": "Module initialization",
            "details": "Encryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A4987)",
            "condition": "Module initialization",
            "details": "Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A4994)",
            "condition": "Module initialization",
            "details": "Encryption",
            "indicator": "Module becomes operational and",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "",
            "condition": "",
            "details": "",
            "indicator": "services are available for use",
            "testMethod": "",
            "testProps": "",
            "type": ""
          },
          {
            "algorithmOrTest": "AES-GCM (A4994)",
            "condition": "Module initialization",
            "details": "Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A5559)",
            "condition": "Module initialization",
            "details": "Encryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-GCM (A5559)",
            "condition": "Module initialization",
            "details": "Decryption",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "AES-CMAC (A4989)",
            "condition": "Module initialization",
            "details": "Message Authentication",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "128, 192, 256- bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDF SP800- 108 (A4990)",
            "condition": "Module initialization",
            "details": "Key Derivation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "HMAC-SHA2- 256 in counter mode",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDA HKDF Sp800-56Cr1 (A4986)",
            "condition": "Module initialization",
            "details": "Key Derivation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "TLS v1.2 KDF RFC7627 (A4987)",
            "condition": "Module initialization",
            "details": "Key Derivation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KDF IKEv2 (A4991)",
            "condition": "Module initialization",
            "details": "Key Derivation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-1, SHA- 256, SHA-384, SHA-512",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "PBKDF (A4987)",
            "condition": "Module initialization",
            "details": "Key Derivation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256 with 5 iterations, 128-bit salt and 14 characters password",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "Hash DRBG (A4987)",
            "condition": "Module initialization",
            "details": "Instantiate Generate; Reseed Generate (compliant to SP 800- 90Ar1 Section 11.3)",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA-256 without prediction resistance",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KAS-FFC- SSC Sp800- 56Ar3 (A4987)",
            "condition": "Module initialization",
            "details": "Shared Secret Computation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "ffdhe2048",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "KAS-ECC- SSC Sp800- 56Ar3 (A4987)",
            "condition": "Module initialization",
            "details": "Shared Secret Computation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "P-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "RSA SigGen (FIPS186-5) (A4987)",
            "condition": "Module initialization",
            "details": "Signature Generation",
            "indicator": "Module becomes operational and",
            "testMethod": "KAT",
            "testProps": "PKCS#1 v1.5 with SHA2- 256, SHA2-384,",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "",
            "condition": "",
            "details": "",
            "indicator": "services are available for use",
            "testMethod": "",
            "testProps": "SHA2-512, and 2048-bit key",
            "type": ""
          },
          {
            "algorithmOrTest": "RSA SigVer (FIPS186-5) (A4987)",
            "condition": "Module initialization",
            "details": "Signature Verification",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "PKCS#1 v1.5 with SHA2- 256, SHA2-384, SHA2-512, and 2048-bit key",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "ECDSA SigGen (FIPS186-5) (A4987)",
            "condition": "Module initialization",
            "details": "Signature Generation",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256 and P-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "ECDSA SigVer (FIPS186-5) (A4987)",
            "condition": "Module initialization",
            "details": "Signature Verification",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "KAT",
            "testProps": "SHA2-256 and P-256",
            "type": "CAST"
          },
          {
            "algorithmOrTest": "Safe Primes Key Generation (A4987)",
            "condition": "Key Pair Generation",
            "details": "PCT according to section 5.6.2.1.4 of [SP800-56Ar3]",
            "indicator": "Successful key pair generation",
            "testMethod": "PCT",
            "testProps": "N/A",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "ECDSA KeyGen (FIPS186-5) (A4987)",
            "condition": "Key Pair Generation",
            "details": "PCT according to section 5.6.2.1.4 of [SP800-56Ar3]",
            "indicator": "Successful key pair generation",
            "testMethod": "PCT",
            "testProps": "N/A",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "ECDSA KeyGen (FIPS186-5) (A4987)",
            "condition": "Key Pair Generation",
            "details": "Signature Generation and Signature Verification",
            "indicator": "Successful key pair generation",
            "testMethod": "PCT",
            "testProps": "SHA-256",
            "type": "PCT"
          },
          {
            "algorithmOrTest": "RSA KeyGen (FIPS186-5) (A4987)",
            "condition": "Key Pair Generation",
            "details": "Signature Generation and Signature Verification",
            "indicator": "Successful key pair generation",
            "testMethod": "PCT",
            "testProps": "PKCS#1 v1.5 with SHA-256",
            "type": "PCT"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 2
      },
      "error_states": {
        "entries": [
          {
            "conditions": "Software integrity test failure or CAST failure",
            "description": "An error occurred during the self-tests executed on power-on",
            "indicator": "Module will not load",
            "name": "Power- On Error",
            "recoveryMethod": "Restart of the module"
          },
          {
            "conditions": "PCT failure",
            "description": "An error occurred during a PCT",
            "indicator": "Module stops functioning (sftk_fatalError is set to TRUE)",
            "name": "PCT Error",
            "recoveryMethod": "Restart of the module"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 4
      },
      "mechanisms_actions": {
        "entries": [],
        "found": false,
        "section": 7,
        "subsection": 1
      },
      "modes_of_operation": {
        "entries": [
          {
            "description": "Automatically entered whenever an approved service is requested.",
            "name": "Approved",
            "statusIndicator": "Equivalent to the indicator of the requested service.",
            "type": "Approved"
          },
          {
            "description": "Automatically entered whenever a non- approved service is requested.",
            "name": "Non- Approved",
            "statusIndicator": "Equivalent to the indicator of the requested service.",
            "type": "Non- Approved"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 4
      },
      "non_approved_allowed_NSC": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 5
      },
      "non_approved_allowed_algos": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 5
      },
      "non_approved_not_allowed": {
        "entries": [
          {
            "name": "MD2, MD5, SHA-1",
            "use": "Message digest"
          },
          {
            "name": "RC2, RC4, DES, Triple-DES, CDMF, Camellia, SEED, ChaCha20(- Poly1305)",
            "use": "Encryption, Decryption"
          },
          {
            "name": "AES GCM (external IV)",
            "use": "Encryption"
          },
          {
            "name": "CBC-MAC, AES XCBC-MAC, AES XCBC-MAC-96",
            "use": "Message authentication"
          },
          {
            "name": "HMAC (MD2, MD5, SHA-1; \u003c 112-bit keys)",
            "use": "Message authentication"
          },
          {
            "name": "HMAC/SSLv3 MAC (constant-time implementation)",
            "use": "Message authentication"
          },
          {
            "name": "MD2, MD5, SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, DES, Triple- DES, AES, Camellia, SEED, ANS X9.63 KDF, SSL 3 PRF, IKEv1 PRF, TLS 1.0/1.1 KDF, TLS KDF without extended master secret",
            "use": "Key derivation"
          },
          {
            "name": "KBKDF, HKDF, TLS 1.2 KDF, IKEv2 PRF (\u003c 112-bit keys)",
            "use": "Key derivation"
          },
          {
            "name": "KBKDF (MD2, MD5)",
            "use": "Key derivation"
          },
          {
            "name": "IKEv2 PRF (MD2, MD5)",
            "use": "Key derivation"
          },
          {
            "name": "PKCS#5 PBE, PKCS#12 PBE",
            "use": "Password-based key derivation"
          },
          {
            "name": "PBKDF2 (short password; short salt; insufficient iterations; \u003c 112-bit keys)",
            "use": "Password-based key derivation"
          },
          {
            "name": "J-PAKE",
            "use": "Shared secret computation"
          },
          {
            "name": "KAS-FFC-SSC (FIPS 186-type groups)",
            "use": "Shared secret computation"
          },
          {
            "name": "X25519",
            "use": "Shared secret computation"
          },
          {
            "name": "DSA",
            "use": "Signature generation, Signature verification"
          },
          {
            "name": "RSA (primitive; PKCS#1 v1.5 or PSS with MD2, MD5, SHA-1)",
            "use": "Signature generation, Signature verification"
          },
          {
            "name": "RSA (\u003c 2048-bit keys)",
            "use": "Signature generation"
          },
          {
            "name": "RSA (\u003c 1024-bit keys)",
            "use": "Signature verification"
          },
          {
            "name": "ECDSA (component)",
            "use": "Signature generation, Signature verification"
          },
          {
            "name": "RSA",
            "use": "Asymmetric encryption, Asymmetric decryption"
          },
          {
            "name": "DSA",
            "use": "Parameter generation, Parameter verification, Key pair generation"
          },
          {
            "name": "DH (FIPS 186-type groups)",
            "use": "Key pair generation"
          },
          {
            "name": "RSA (\u003c 2048 bits; \u003e 4096 bits)",
            "use": "Key pair generation"
          },
          {
            "name": "Ed25519, X25519",
            "use": "Key pair generation"
          },
          {
            "name": "Symmetric key generation (\u003c 112 bits)",
            "use": "Secret key generation"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "non_approved_services": {
        "entries": [
          {
            "alg_accessed": "MD2, MD5, SHA-1",
            "description": "Compute a message digest",
            "name": "Message Digest",
            "role": "CO"
          },
          {
            "alg_accessed": "RC2, RC4, DES, Triple-DES, CDMF, Camellia, SEED, ChaCha20(-Poly1305) AES GCM (external IV)",
            "description": "Encrypt a plaintext",
            "name": "Encryption",
            "role": "CO"
          },
          {
            "alg_accessed": "RC2, RC4, DES, Triple-DES, CDMF, Camellia, SEED, ChaCha20(-Poly1305)",
            "description": "Decrypt a ciphertext",
            "name": "Decryption",
            "role": "CO"
          },
          {
            "alg_accessed": "CBC-MAC, AES XCBC-MAC, AES XCBC-MAC-96 HMAC (MD2, MD5, SHA-1; \u003c 112-bit keys) HMAC/SSLv3 MAC (constant-time implementation)",
            "description": "Compute a MAC tag",
            "name": "Message Authentication",
            "role": "CO"
          },
          {
            "alg_accessed": "MD2, MD5, SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, DES, Triple-DES, AES, Camellia, SEED, ANS X9.63 KDF, SSL 3 PRF, IKEv1 PRF, TLS 1.0/1.1 KDF, TLS KDF without extended master secret KBKDF, HKDF, TLS 1.2 KDF, IKEv2 PRF (\u003c 112-bit",
            "description": "Derive a key from a key-derivation key or a shared secret",
            "name": "Key Derivation",
            "role": "CO"
          },
          {
            "alg_accessed": "keys) KBKDF (MD2, MD5) IKEv2 PRF (MD2, MD5)",
            "description": "",
            "name": "",
            "role": ""
          },
          {
            "alg_accessed": "PKCS#5 PBE, PKCS#12 PBE PBKDF2 (short password; short salt; insufficient iterations; \u003c 112-bit keys)",
            "description": "Derive a key from a password",
            "name": "Password-Based Key Derivation",
            "role": "CO"
          },
          {
            "alg_accessed": "J-PAKE KAS-FFC-SSC (FIPS 186-type groups) X25519",
            "description": "Compute a shared secret",
            "name": "Shared Secret Computation",
            "role": "CO"
          },
          {
            "alg_accessed": "DSA RSA (primitive; PKCS#1 v1.5 or PSS with MD2, MD5, SHA-1) RSA (\u003c 2048-bit keys) ECDSA (component)",
            "description": "Generate a signature",
            "name": "Signature Generation",
            "role": "CO"
          },
          {
            "alg_accessed": "DSA RSA (\u003c 1024-bit keys) ECDSA (component)",
            "description": "Verify a signature",
            "name": "Signature Verification",
            "role": "CO"
          },
          {
            "alg_accessed": "RSA",
            "description": "Encrypt a plaintext",
            "name": "Asymmetric Encryption",
            "role": "CO"
          },
          {
            "alg_accessed": "RSA",
            "description": "Decrypt a plaintext",
            "name": "Asymmetric Decryption",
            "role": "CO"
          },
          {
            "alg_accessed": "DSA",
            "description": "Generate domain parameters",
            "name": "Parameter Generation",
            "role": "CO"
          },
          {
            "alg_accessed": "DSA",
            "description": "Verify domain parameters",
            "name": "Parameter Verification",
            "role": "CO"
          },
          {
            "alg_accessed": "DSA DH (FIPS 186-type groups) RSA (\u003c 2048 bits; \u003e 4096 bits) Ed25519, X25519",
            "description": "Generate a key pair",
            "name": "Key Pair Generation",
            "role": "CO"
          },
          {
            "alg_accessed": "Symmetric key generation (\u003c 112 bits)",
            "description": "Generate a secret key",
            "name": "Secret Key Generation",
            "role": "CO"
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 4
      },
      "ports_interfaces": {
        "entries": [
          {
            "data": "API input parameters",
            "logicalInterface": "Data Input",
            "physicalPort": "As a software-only module, the module does not have physical ports. Physical Ports are interpreted to be the physical ports of the hardware platform on which it runs."
          },
          {
            "data": "API output parameters",
            "logicalInterface": "Data Output",
            "physicalPort": "As a software-only module, the module does not have physical ports. Physical Ports are interpreted to be the physical ports of the hardware platform on which it runs."
          },
          {
            "data": "API function calls, API input parameters for control input",
            "logicalInterface": "Control Input",
            "physicalPort": "As a software-only module, the module does not have physical ports. Physical Ports are interpreted to be the physical ports of the hardware platform on which it runs."
          },
          {
            "data": "API return codes",
            "logicalInterface": "Status Output",
            "physicalPort": "As a software-only module, the module does not have physical ports. Physical Ports are interpreted to be the physical ports of the hardware platform on which it runs."
          }
        ],
        "found": true,
        "section": 3,
        "subsection": 1
      },
      "roles": {
        "entries": [
          {
            "authMethodList": "None",
            "name": "Crypto Officer",
            "operatorType": "CO",
            "type": "Role"
          }
        ],
        "found": true,
        "section": 4,
        "subsection": 2
      },
      "security_levels": {
        "entries": [
          {
            "level": "1",
            "section": "1",
            "title": "General"
          },
          {
            "level": "1",
            "section": "2",
            "title": "Cryptographic module specification"
          },
          {
            "level": "1",
            "section": "3",
            "title": "Cryptographic module interfaces"
          },
          {
            "level": "1",
            "section": "4",
            "title": "Roles, services, and authentication"
          },
          {
            "level": "1",
            "section": "5",
            "title": "Software/Firmware security"
          },
          {
            "level": "1",
            "section": "6",
            "title": "Operational environment"
          },
          {
            "level": "N/A",
            "section": "7",
            "title": "Physical security"
          },
          {
            "level": "N/A",
            "section": "8",
            "title": "Non-invasive security"
          },
          {
            "level": "1",
            "section": "9",
            "title": "Sensitive security parameter management"
          },
          {
            "level": "1",
            "section": "10",
            "title": "Self-tests"
          },
          {
            "level": "1",
            "section": "11",
            "title": "Life-cycle assurance"
          },
          {
            "level": "1",
            "section": "12",
            "title": "Mitigation of other attacks"
          },
          {
            "level": "1",
            "section": "",
            "title": "Overall Level"
          }
        ],
        "found": true,
        "section": 1,
        "subsection": 2
      },
      "self_tests": {
        "entries": [
          {
            "algorithmOrTest": "HMAC- SHA2-256 (A4987)",
            "details": "Integrity test for libsoftokn3.so and libfreeblpriv3.so",
            "indicator": "Module becomes operational and services are available for use",
            "testMethod": "Message authentication",
            "testProps": "256-bit key",
            "type": "SW/FW Integrity"
          }
        ],
        "found": true,
        "section": 10,
        "subsection": 1
      },
      "ssp_io_methods": {
        "entries": [
          {
            "dest": "Cryptographic module",
            "distribution": "Manual",
            "entry": "Electronic",
            "format": "Plaintext",
            "name": "API input parameters (plaintext)",
            "sfiAlgo": "",
            "source": "Calling application within TOEPP"
          },
          {
            "dest": "Cryptographic module",
            "distribution": "Manual",
            "entry": "Electronic",
            "format": "Encrypted",
            "name": "API input parameters (encrypted)",
            "sfiAlgo": "Key Unwrapping with AES",
            "source": "Calling application within TOEPP"
          },
          {
            "dest": "Calling application within TOEPP",
            "distribution": "Manual",
            "entry": "Electronic",
            "format": "Plaintext",
            "name": "API output parameters (plaintext)",
            "sfiAlgo": "",
            "source": "Cryptographic module"
          },
          {
            "dest": "Calling application within TOEPP",
            "distribution": "Manual",
            "entry": "Electronic",
            "format": "Encrypted",
            "name": "API output parameters (encrypted)",
            "sfiAlgo": "Key Wrapping with AES",
            "source": "Cryptographic module"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 2
      },
      "ssp_zeroization_methods": {
        "entries": [
          {
            "description": "Destroys the SSP represented by the object",
            "method": "Destroy Object",
            "operatorId": "By calling the C_DestroyObject function.",
            "rationale": "Memory occupied by SSPs is overwritten with zeroes, which renders the SSP values irretrievable. The completion of the zeroization routine indicates that the zeroization procedure succeeded."
          },
          {
            "description": "Automatically zeroized by the module when no longer needed",
            "method": "Automatic",
            "operatorId": "N/A",
            "rationale": "Memory occupied by SSPs is overwritten with zeroes, which renders the SSP values irretrievable."
          },
          {
            "description": "De-allocates the volatile memory used to store SSPs",
            "method": "Remove power from the module",
            "operatorId": "By removing power",
            "rationale": "Volatile memory used by the module is overwritten within nanoseconds when power is removed. Module power off indicates that the zeroization procedure succeeded."
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 3
      },
      "storage_areas": {
        "entries": [
          {
            "description": "Temporary storage for SSPs used by the module as part of service execution. The module does not perform persistent storage of SSPs",
            "name": "RAM",
            "persistance": "Dynamic"
          }
        ],
        "found": true,
        "section": 9,
        "subsection": 1
      },
      "tested_module_id_hw": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_module_id_hw_hy": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_module_id_sw_fw_hy": {
        "entries": [],
        "found": false,
        "section": 2,
        "subsection": 2
      },
      "tested_op_env_sw_fw_hy": {
        "entries": [
          {
            "hardwarePlatform": "Dell PowerEdge R440",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Red Hat Enterprise Linux 9",
            "paa_pai": "Yes",
            "processors": "Intel Cascade Lake Xeon Silver 4216",
            "version": "3.90.0- 4408e3bb8a34af3a"
          },
          {
            "hardwarePlatform": "Dell PowerEdge R440",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Red Hat Enterprise Linux 9",
            "paa_pai": "No",
            "processors": "Intel Cascade Lake Xeon Silver 4216",
            "version": "3.90.0- 4408e3bb8a34af3a"
          },
          {
            "hardwarePlatform": "IBM 9080- HEX",
            "hypervisorHostOs": "PowerVM FW1040.00 with VIOS 3.1.3.00",
            "operatingSystem": "Red Hat Enterprise Linux 9",
            "paa_pai": "Yes",
            "processors": "IBM POWER10",
            "version": "3.90.0- 4408e3bb8a34af3a"
          },
          {
            "hardwarePlatform": "IBM 9080- HEX",
            "hypervisorHostOs": "PowerVM FW1040.00 with VIOS 3.1.3.00",
            "operatingSystem": "Red Hat Enterprise Linux 9",
            "paa_pai": "No",
            "processors": "IBM POWER10",
            "version": "3.90.0- 4408e3bb8a34af3a"
          },
          {
            "hardwarePlatform": "IBM z16 3931-A01",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Red Hat Enterprise Linux 9",
            "paa_pai": "Yes",
            "processors": "IBM z16",
            "version": "3.90.0- 4408e3bb8a34af3a"
          },
          {
            "hardwarePlatform": "IBM z16 3931-A01",
            "hypervisorHostOs": "N/A",
            "operatingSystem": "Red Hat Enterprise Linux 9",
            "paa_pai": "No",
            "processors": "IBM z16",
            "version": "3.90.0- 4408e3bb8a34af3a"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 2
      },
      "vendor_affirmed_algos": {
        "entries": [
          {
            "algoPropList": "Key type:Symmetric",
            "implName": "N/A",
            "name": "Symmetric Cryptographic Key Generation (CKG)",
            "reference": "SP 800-133r2, section 4, example 1, and section 6.1"
          },
          {
            "algoPropList": "Key type:Asymmetric",
            "implName": "N/A",
            "name": "Asymmetric Cryptographic Key Generation (CKG)",
            "reference": "SP 800-133r2, section 4, example 1"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 5
      },
      "vendor_affirmed_op_env_sw_fw_hy": {
        "entries": [
          {
            "hardwarePlatform": "Intel(R) Xeon(R) E5",
            "operatingSystem": "Red Hat Enterprise Linux 9"
          }
        ],
        "found": true,
        "section": 2,
        "subsection": 2
      }
    },
    "is_br1_format": true,
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 2
          },
          "ECDH": {
            "ECDH": 4
          },
          "ECDSA": {
            "ECDSA": 36
          }
        },
        "FF": {
          "DH": {
            "DH": 27,
            "Diffie-Hellman": 6
          },
          "DSA": {
            "DSA": 7
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "GCM": {
          "GCM": 13
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "NSS": {
          "NSS": 6
        }
      },
      "crypto_protocol": {
        "IKE": {
          "IKE": 7,
          "IKEv1": 2,
          "IKEv2": 19
        },
        "TLS": {
          "SSL": {
            "SSL": 2
          },
          "TLS": {
            "TLS": 14,
            "TLS 1.2": 14,
            "TLS 1.3": 4,
            "TLS v1.2": 4
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "MAC": {
          "MAC": 13
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Edwards": {
          "Ed25519": 2
        },
        "NIST": {
          "P-256": 18,
          "P-384": 8,
          "P-521": 20
        }
      },
      "eval_facility": {
        "atsec": {
          "atsec": 2
        }
      },
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "- PKCS 1": 2,
          "HMAC- SHA-1": 1,
          "HMAC-SHA-1": 6,
          "HMAC-SHA-256": 6,
          "PKCS 1": 2,
          "PKCS#1": 10,
          "PKCS#11": 2,
          "PKCS#12": 6,
          "PKCS#5": 6,
          "PKCS#7": 2,
          "SHA- 256": 1,
          "SHA-1": 14,
          "SHA-224": 2,
          "SHA-256": 7,
          "SHA-384": 3,
          "SHA-512": 3,
          "SHA2- 256": 2,
          "SHA2- 512": 3,
          "SHA2-224": 7,
          "SHA2-256": 17,
          "SHA2-384": 11,
          "SHA2-512": 10
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 2
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 12
          }
        },
        "PBKDF": {
          "PBKDF": 9,
          "PBKDF2": 6
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 14
          },
          "SHA2": {
            "SHA-224": 2,
            "SHA-256": 7,
            "SHA-384": 3,
            "SHA-512": 3
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {
        "curves": {
          "X25519": 4
        }
      },
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 24
        },
        "RNG": {
          "RBG": 3,
          "RNG": 1
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "Timing attacks": 1,
          "timing attack": 1,
          "timing attacks": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-3": 11,
          "FIPS 180-4": 4,
          "FIPS 186-4": 2,
          "FIPS 186-5": 10,
          "FIPS 198-1": 5,
          "FIPS PUB 140-3": 1,
          "FIPS186-2": 2,
          "FIPS186-4": 2,
          "FIPS186-5": 26
        },
        "NIST": {
          "SP 800-108": 1,
          "SP 800-132": 7,
          "SP 800-135": 2,
          "SP 800-38A": 7,
          "SP 800-38B": 1,
          "SP 800-38D": 3,
          "SP 800-38F": 4,
          "SP 800-56A": 3,
          "SP 800-56C": 1,
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS 1": 2,
          "PKCS#1": 5,
          "PKCS#11": 1,
          "PKCS#12": 3,
          "PKCS#5": 3,
          "PKCS#7": 1
        },
        "RFC": {
          "RFC 3526": 3,
          "RFC 5288": 1,
          "RFC 7627": 2,
          "RFC 7919": 3,
          "RFC7627": 4,
          "RFC8446": 2
        },
        "X509": {
          "X.509": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 69
          },
          "CAST": {
            "CAST": 78
          },
          "RC": {
            "RC2": 3,
            "RC4": 3
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 4
          },
          "DES": {
            "DES": 6
          }
        },
        "constructions": {
          "MAC": {
            "CBC-MAC": 2,
            "CMAC": 4,
            "HMAC": 15,
            "HMAC-SHA-256": 3
          }
        },
        "djb": {
          "ChaCha": {
            "ChaCha20": 3
          },
          "Poly": {
            "Poly1305": 1
          }
        },
        "miscellaneous": {
          "Camellia": {
            "Camellia": 5
          },
          "SEED": {
            "SEED": 5
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 3
        },
        "IBM": {
          "SSC": 2
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "module_algorithms": {
      "_type": "Set",
      "elements": [
        "AES-ECBA4994",
        "ECDSA SigVer (FIPS186-5)A4987",
        "SHA2-224A4987",
        "RSA SigVer (FIPS186-5)A4987",
        "RSA KeyGen (FIPS186-5)A4987",
        "HMAC-SHA-1A4987",
        "RSA SigGen (FIPS186-5)A4987",
        "HMAC-SHA2-512A4987",
        "ECDSA SigGen (FIPS186-5)A4987",
        "ECDSA KeyGen (FIPS186-5)A4987",
        "AES-KWPA4993",
        "RSA SigVer (FIPS186-2)A4987",
        "AES-CTRA4994",
        "AES-CBC-CS1A4992",
        "HMAC-SHA2-256A4987",
        "KDF IKEv2A4991",
        "KDF SP800-108A4990",
        "AES-CMACA4989",
        "SHA2-256A4987",
        "HMAC-SHA2-384A4987",
        "KAS-ECC-SSC Sp800-56Ar3A4987",
        "RSA SigVer (FIPS186-4)A4987",
        "AES-CBCA4994",
        "KDA HKDF Sp800-56Cr1A4986",
        "KAS-FFC-SSC Sp800-56Ar3A4987",
        "SHA2-512A4987",
        "HMAC-SHA2-224A4987",
        "AES-GCMA5559",
        "AES-KWA4993",
        "SHA2-384A4987",
        "PBKDFA4987",
        "Safe Primes Key GenerationA4987",
        "TLS v1.2 KDF RFC7627A4987",
        "Hash DRBGA4987"
      ]
    },
    "policy_algorithms": {
      "_type": "Set",
      "elements": [
        "#A4987",
        "#A4991",
        "#A4989",
        "#A4994",
        "#A4993",
        "#A4990",
        "#A4988",
        "#A5559",
        "#A4986",
        "#A4992"
      ]
    },
    "policy_metadata": {
      "/Author": "Pittinger, Zachary E. (Ctr)",
      "/CreationDate": "D:20250527115112-04\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word for Microsoft 365",
      "/ModDate": "D:20250527115112-04\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word for Microsoft 365",
      "pdf_file_size_bytes": 628887,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/security_hardening/assembly_installing-the-system-in-fips-mode_security-hardening#proc_installing-the-system-with-fips-mode-enabled_assembly_installing-the-system-in-fips-mode",
          "https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/security_hardening/using-the-system-wide-cryptographic-policies_security-hardening#switching-the-system-to-fips-mode_using-the-system-wide-cryptographic-policies",
          "http://www.atsec.com/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 62
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "fbefcb1bf75fb0c477b6893eb51f1a2eb58cbada508cc970df2e7d928aba70a0",
      "source_hash": "52dca28a463a572173be1abf584899581ed7748c36323751757ef25651d26fa1",
      "txt_hash": "d21151969a1b1a370db541feee7e62bba8e82c936a06ba81b61090b047abd683"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in approved mode and installed, initialized and configured as specified in the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/May 2025_130625_0321.pdf",
    "date_sunset": "2030-05-29",
    "description": "Network Security Services (NSS) is a set of open source C libraries designed to support cross-platform development of security-enabled applications. NSS implements major Internet security standards. NSS is available free of charge under a variety of open source compatible licenses. See http://www.mozilla.org/projects/security/pki/nss/.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical security: N/A",
      "Non-invasive security: N/A"
    ],
    "fw_versions": null,
    "historical_reason": null,
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Red Hat Enterprise Linux 9 NSS Cryptographic Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2025-05-30",
        "lab": "atsec information security corporation",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Red Hat, Inc",
    "vendor_url": "http://www.redhat.com"
  }
}