Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-11697

Опубликовано: 27 дек. 2017
Источник: debian

Описание

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nssunfixedpackage

Примечания

  • Issues triggered by crafted DBM databases, which would

  • require local user access to a machine running NSS and

  • crafting the local DBM files.

  • http://seclists.org/fulldisclosure/2017/Aug/17

  • https://bugzilla.mozilla.org/show_bug.cgi?id=1360900

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 8 лет назад

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.

CVSS3: 7.5
redhat
больше 8 лет назад

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.

CVSS3: 7.8
nvd
около 8 лет назад

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.

msrc
5 месяцев назад

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.

CVSS3: 7.8
github
больше 3 лет назад

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.