Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-3640

Опубликовано: 23 сент. 2011
Источник: redhat
CVSS2: 0

Описание

Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4nssNot affected
Red Hat Enterprise Linux 5nssNot affected
Red Hat Enterprise Linux 6nssAffected

Показывать по

Дополнительная информация

https://bugzilla.redhat.com/show_bug.cgi?id=748379nss: /pkcs11.txt and /secmod.db files read on initialization

0 Low

CVSS2

Связанные уязвимости

ubuntu
больше 14 лет назад

Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."

nvd
больше 14 лет назад

Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."

debian
больше 14 лет назад

Untrusted search path vulnerability in Mozilla Network Security Servic ...

github
больше 3 лет назад

** DISPUTED ** Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."

0 Low

CVSS2