PT-2006-7535 · Mozilla+3 · Libnss-Dev+7

Marius Schilder

+1

·

Published

1970-01-01

·

Updated

2023-02-13

·

CVE-2006-4340

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions libnspr4 versions (affected versions not specified) libnss3 versions (affected versions not specified) nss versions prior to 3.11.3 libnspr-dev versions (affected versions not specified) libnss-dev versions (affected versions not specified)
Description The issue concerns multiple vulnerabilities in various packages of Debian GNU/Linux and Gentoo Linux operating systems. These vulnerabilities can be exploited remotely, potentially leading to breaches of confidentiality, integrity, and availability of protected information.
Recommendations For libnspr4, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For libnss3, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For nss, update to version 3.11.3 or later to resolve the issue. For libnspr-dev, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For libnss-dev, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2015-01278
BDU:2015-01279
BDU:2015-01280
BDU:2015-01281
BDU:2015-09530
CVE-2006-4340
DSA-1191-1
DSA-1192-1
DSA-1210
HPSBUX02153
RHSA-2006:0675
RHSA-2006:0676
RHSA-2006:0677
RHSA-2006_0675
RHSA-2006_0676
RHSA-2006_0677

Affected Products

Debian
Gentoo Linux
Red Hat
Libnspr-Dev
Libnspr4
Libnss-Dev
Libnss3
Nss