Описание
The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, improperly divides numbers, which might make it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging use of the (1) mp_div or (2) mp_exptmod function.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 44.0+build3-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [44.0+build3-0ubuntu0.14.04.1]] |
| precise | released | 44.0+build3-0ubuntu0.12.04.1 |
| precise/esm | DNE | precise was released [44.0+build3-0ubuntu0.12.04.1] |
| trusty | released | 44.0+build3-0ubuntu0.14.04.1 |
| trusty/esm | DNE | trusty was released [44.0+build3-0ubuntu0.14.04.1] |
| upstream | released | 44.0 |
| vivid | released | 44.0+build3-0ubuntu0.15.04.1 |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2:3.21-1ubuntu2 |
| esm-infra-legacy/trusty | released | 2:3.21-0ubuntu0.14.04.1 |
| esm-infra/xenial | not-affected | 2:3.21-1ubuntu2 |
| precise | released | 2:3.21-0ubuntu0.12.04.1 |
| precise/esm | not-affected | 2:3.21-0ubuntu0.12.04.1 |
| trusty | released | 2:3.21-0ubuntu0.14.04.1 |
| trusty/esm | released | 2:3.21-0ubuntu0.14.04.1 |
| upstream | released | 3.21 |
| vivid | ignored | end of life |
| vivid/stable-phone-overlay | ignored | end of life |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 1:38.8.0+build1-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1:38.8.0+build1-0ubuntu0.14.04.1]] |
| precise | released | 1:38.8.0+build1-0ubuntu0.12.04.1 |
| precise/esm | DNE | precise was released [1:38.8.0+build1-0ubuntu0.12.04.1] |
| trusty | released | 1:38.8.0+build1-0ubuntu0.14.04.1 |
| trusty/esm | DNE | trusty was released [1:38.8.0+build1-0ubuntu0.14.04.1] |
| upstream | released | 38.8.0 |
| vivid | ignored | end of life |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
Ссылки на источники
EPSS
6.4 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, improperly divides numbers, which might make it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging use of the (1) mp_div or (2) mp_exptmod function.
The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, improperly divides numbers, which might make it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging use of the (1) mp_div or (2) mp_exptmod function.
The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Secur ...
The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, improperly divides numbers, which might make it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging use of the (1) mp_div or (2) mp_exptmod function.
Security update for MozillaFirefox, MozillaFirefox-branding-SLE, mozilla-nss
EPSS
6.4 Medium
CVSS2
6.5 Medium
CVSS3