Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-1101

Опубликовано: 28 апр. 2017
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2017-1101: nss security update (CRITICAL)

[3.21.3-2.0.1]

  • Fix out-of-bound issue in base64 encoding/decoding code {CVE-2017-5461}

Обновленные пакеты

Oracle Linux 5

Oracle Linux x86_64

nss

3.21.3-2.0.1.el5_11

nss-devel

3.21.3-2.0.1.el5_11

nss-pkcs11-devel

3.21.3-2.0.1.el5_11

nss-tools

3.21.3-2.0.1.el5_11

Oracle Linux i386

nss

3.21.3-2.0.1.el5_11

nss-devel

3.21.3-2.0.1.el5_11

nss-pkcs11-devel

3.21.3-2.0.1.el5_11

nss-tools

3.21.3-2.0.1.el5_11

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.

CVSS3: 9.8
redhat
больше 8 лет назад

Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.

CVSS3: 9.8
nvd
больше 8 лет назад

Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.

CVSS3: 9.8
debian
больше 8 лет назад

Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through ...

CVSS3: 9.8
github
больше 3 лет назад

Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.