PT-2013-3370 · Mozilla+4 · Network Security Services+4

Tavis Ormandy

·

Published

2013-11-15

·

Updated

2018-10-09

·

CVE-2013-1741

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Mozilla Network Security Services (NSS) versions 3.15 through 3.15.2
Description The issue is related to an integer overflow that can be triggered by a large size value, potentially allowing remote attackers to cause a denial of service or have other unspecified impacts.
Recommendations For Mozilla Network Security Services (NSS) versions 3.15 through 3.15.2, update to version 3.15.3 or later to resolve the issue.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2013-1148
CESA-2013_1829
CVE-2013-1741
DLA-23-1
DSA-2994-1
MGASA-2013-0337
RHSA-2013:1791
RHSA-2013:1829
RHSA-2013_1791
RHSA-2013_1829
SUSE-SU-2013_1807-1

Affected Products

Alt Linux
Centos
Network Security Services
Red Hat
Suse