PT-2013-1088 · Mozilla+5 · Network Security Services+5
:Kaie
+1
·
Publicado
2013-10-22
·
Atualizado
2024-06-15
·
CVE-2013-1739
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Debian GNU/Linux versions (affected versions not specified)
Mozilla Network Security Services (NSS) versions prior to 3.15.2
Description
The issue concerns multiple vulnerabilities in the nss package of Debian GNU/Linux, which can be exploited remotely to disrupt the availability of protected information. The vulnerabilities in Mozilla Network Security Services (NSS) before version 3.15.2 are related to the failure to ensure that data structures are initialized before read operations. This can allow remote attackers to cause a denial of service or possibly have other unspecified impacts via vectors that trigger a decryption failure.
Recommendations
For Mozilla Network Security Services (NSS) versions prior to 3.15.2, update to version 3.15.2 or later to resolve the issue.
For Debian GNU/Linux, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Alt Linux
Centos
Debian
Network Security Services
Red Hat
Suse