Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-12238

Опубликовано: 06 апр. 2023
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2023-12238: nss security update (IMPORTANT)

[3.44.0-7.0.3]

  • Back port nss security update CVE-2023-0767 [Orabug: 35205543]

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

nss

3.44.0-7.0.3.el6_10

nss-devel

3.44.0-7.0.3.el6_10

nss-pkcs11-devel

3.44.0-7.0.3.el6_10

nss-sysinit

3.44.0-7.0.3.el6_10

nss-tools

3.44.0-7.0.3.el6_10

Oracle Linux i686

nss

3.44.0-7.0.3.el6_10

nss-devel

3.44.0-7.0.3.el6_10

nss-pkcs11-devel

3.44.0-7.0.3.el6_10

nss-sysinit

3.44.0-7.0.3.el6_10

nss-tools

3.44.0-7.0.3.el6_10

Связанные CVE

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 2 лет назад

An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12 Safe Bag attributes being mishandled. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR < 102.8.

CVSS3: 8.8
redhat
больше 2 лет назад

An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12 Safe Bag attributes being mishandled. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR < 102.8.

CVSS3: 8.8
nvd
около 2 лет назад

An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12 Safe Bag attributes being mishandled. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR < 102.8.

CVSS3: 8.8
debian
около 2 лет назад

An attacker could construct a PKCS 12 cert bundle in such a way that c ...

suse-cvrf
больше 2 лет назад

Security update for mozilla-nss