Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h4cr-x49j-2r7w

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling the library did not perform a sanity check on the inputs it could result in a crash due to a buffer overflow.

In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling the library did not perform a sanity check on the inputs it could result in a crash due to a buffer overflow.

EPSS

Процентиль: 80%
0.01458
Низкий

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 5 лет назад

In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling the library did not perform a sanity check on the inputs it could result in a crash due to a buffer overflow.

CVSS3: 8.1
redhat
почти 6 лет назад

In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling the library did not perform a sanity check on the inputs it could result in a crash due to a buffer overflow.

CVSS3: 9.8
nvd
около 5 лет назад

In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling the library did not perform a sanity check on the inputs it could result in a crash due to a buffer overflow.

CVSS3: 9.8
debian
около 5 лет назад

In Network Security Services (NSS) before 3.46, several cryptographic ...

CVSS3: 8.1
fstec
почти 6 лет назад

Уязвимость набора библиотек NSS (Network Security Services), существующая из-за недостаточной проверки входных данных, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 80%
0.01458
Низкий

Дефекты

CWE-345