Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-9574

Опубликовано: 19 июл. 2018
Источник: debian
EPSS Низкий

Описание

nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nssfixed2:3.25-1package

Примечания

  • https://bugzilla.mozilla.org/show_bug.cgi?id=1320695

  • The CVE is specific to the segfault resulting from the reproducing steps

  • as per buzilla entry, and https://bugzilla.redhat.com/show_bug.cgi?id=1397482

  • https://hg.mozilla.org/projects/nss/rev/7385cd821735

EPSS

Процентиль: 40%
0.00184
Низкий

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 7 лет назад

nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA.

CVSS3: 5.9
redhat
около 9 лет назад

nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA.

CVSS3: 5.9
nvd
больше 7 лет назад

nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA.

suse-cvrf
почти 9 лет назад

Security update for mozilla-nss

CVSS3: 5.9
github
больше 3 лет назад

nss before version 3.30 is vulnerable to a remote denial of service during the session handshake when using SessionTicket extension and ECDHE-ECDSA.

EPSS

Процентиль: 40%
0.00184
Низкий