Логотип exploitDog
bind:"GHSA-9w79-fpqx-hcfm" OR bind:"CVE-2009-2404"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-9w79-fpqx-hcfm" OR bind:"CVE-2009-2404"

Количество 7

Количество 7

github логотип

GHSA-9w79-fpqx-hcfm

около 3 лет назад

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

EPSS: Средний
ubuntu логотип

CVE-2009-2404

почти 16 лет назад

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

CVSS2: 9.3
EPSS: Средний
redhat логотип

CVE-2009-2404

почти 16 лет назад

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

CVSS2: 6.8
EPSS: Средний
nvd логотип

CVE-2009-2404

почти 16 лет назад

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

CVSS2: 9.3
EPSS: Средний
debian логотип

CVE-2009-2404

почти 16 лет назад

Heap-based buffer overflow in a regular-expression parser in Mozilla N ...

CVSS2: 9.3
EPSS: Средний
oracle-oval логотип

ELSA-2009-1186

почти 16 лет назад

ELSA-2009-1186: nspr and nss security, bug fix, and enhancement update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2009-1184

почти 16 лет назад

ELSA-2009-1184: nspr and nss security and bug fix update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-9w79-fpqx-hcfm

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

21%
Средний
около 3 лет назад
ubuntu логотип
CVE-2009-2404

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

CVSS2: 9.3
21%
Средний
почти 16 лет назад
redhat логотип
CVE-2009-2404

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

CVSS2: 6.8
21%
Средний
почти 16 лет назад
nvd логотип
CVE-2009-2404

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM), allows remote SSL servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long domain name in the subject's Common Name (CN) field of an X.509 certificate, related to the cert_TestHostName function.

CVSS2: 9.3
21%
Средний
почти 16 лет назад
debian логотип
CVE-2009-2404

Heap-based buffer overflow in a regular-expression parser in Mozilla N ...

CVSS2: 9.3
21%
Средний
почти 16 лет назад
oracle-oval логотип
ELSA-2009-1186

ELSA-2009-1186: nspr and nss security, bug fix, and enhancement update (CRITICAL)

почти 16 лет назад
oracle-oval логотип
ELSA-2009-1184

ELSA-2009-1184: nspr and nss security and bug fix update (CRITICAL)

почти 16 лет назад

Уязвимостей на страницу