Количество 10
Количество 10

CVE-2014-1492
The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate.

CVE-2014-1492
The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate.

CVE-2014-1492
The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate.
CVE-2014-1492
The cert_TestHostName function in lib/certdb/certdb.c in the certifica ...
GHSA-fxvw-6w4h-3mx5
The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate.
ELSA-2014-1073
ELSA-2014-1073: nss, nss-util, nss-softokn security, bug fix, and enhancement update (LOW)

BDU:2015-00680
Уязвимость программного обеспечения SeaMonkey, позволяющая удаленному злоумышленнику нарушить защищаемой информации

BDU:2015-00420
Уязвимость браузера Firefox, позволяющая удаленному злоумышленнику нарушить целостность защищаемой информации
ELSA-2014-1246
ELSA-2014-1246: nss and nspr security, bug fix, and enhancement update (MODERATE)
ELSA-2014-0917
ELSA-2014-0917: nss and nspr security, bug fix, and enhancement update (CRITICAL)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2014-1492 The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | CVSS2: 4.3 | 1% Низкий | больше 11 лет назад |
![]() | CVE-2014-1492 The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | CVSS2: 2.6 | 1% Низкий | больше 11 лет назад |
![]() | CVE-2014-1492 The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | CVSS2: 4.3 | 1% Низкий | больше 11 лет назад |
CVE-2014-1492 The cert_TestHostName function in lib/certdb/certdb.c in the certifica ... | CVSS2: 4.3 | 1% Низкий | больше 11 лет назад | |
GHSA-fxvw-6w4h-3mx5 The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name's U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | 1% Низкий | больше 3 лет назад | ||
ELSA-2014-1073 ELSA-2014-1073: nss, nss-util, nss-softokn security, bug fix, and enhancement update (LOW) | почти 11 лет назад | |||
![]() | BDU:2015-00680 Уязвимость программного обеспечения SeaMonkey, позволяющая удаленному злоумышленнику нарушить защищаемой информации | CVSS2: 4.3 | 1% Низкий | больше 11 лет назад |
![]() | BDU:2015-00420 Уязвимость браузера Firefox, позволяющая удаленному злоумышленнику нарушить целостность защищаемой информации | CVSS2: 4.3 | 1% Низкий | больше 11 лет назад |
ELSA-2014-1246 ELSA-2014-1246: nss and nspr security, bug fix, and enhancement update (MODERATE) | почти 11 лет назад | |||
ELSA-2014-0917 ELSA-2014-0917: nss and nspr security, bug fix, and enhancement update (CRITICAL) | около 11 лет назад |
Уязвимостей на страницу