Mozilla Network Security Services 'p12creat.c' Memory Corruption Vulnerability
BID:66366
Info
Mozilla Network Security Services 'p12creat.c' Memory Corruption Vulnerability
| Bugtraq ID: | 66366 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 21 2014 12:00AM |
| Updated: | Mar 21 2014 12:00AM |
| Credit: | Vendor reported this issue. |
| Vulnerable: |
Mozilla Network Security Services (NSS) 3.12.5 Mozilla Network Security Services (NSS) 3.12.3 Mozilla Network Security Services (NSS) 3.12.2 Mozilla Network Security Services (NSS) 3.11.3 Mozilla Network Security Services (NSS) 3.9.2 Mozilla Network Security Services (NSS) 3.9 Mozilla Network Security Services (NSS) 3.8 Mozilla Network Security Services (NSS) 3.7.7 Mozilla Network Security Services (NSS) 3.7.5 Mozilla Network Security Services (NSS) 3.7.3 Mozilla Network Security Services (NSS) 3.7.2 Mozilla Network Security Services (NSS) 3.7.1 Mozilla Network Security Services (NSS) 3.7 Mozilla Network Security Services (NSS) 3.6.1 Mozilla Network Security Services (NSS) 3.6 Mozilla Network Security Services (NSS) 3.5 Mozilla Network Security Services (NSS) 3.4.2 Mozilla Network Security Services (NSS) 3.4.1 Mozilla Network Security Services (NSS) 3.4 Mozilla Network Security Services (NSS) 3.3.2 Mozilla Network Security Services (NSS) 3.3.1 Mozilla Network Security Services (NSS) 3.3 Mozilla Network Security Services (NSS) 3.2.1 Mozilla Network Security Services (NSS) 3.2 Mozilla Network Security Services (NSS) 3.12.6 Mozilla Network Security Services (NSS) 3.12 Mozilla Network Security Services (NSS) 3.11 |
| Not Vulnerable: | |
Discussion
Mozilla Network Security Services 'p12creat.c' Memory Corruption Vulnerability
Mozilla Network Security Services is prone to a remote memory-corruption vulnerability.
Successful exploits may allow an attacker to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will result in a denial-of-service condition.
Mozilla Network Security Services is prone to a remote memory-corruption vulnerability.
Successful exploits may allow an attacker to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will result in a denial-of-service condition.
Exploit / POC
Mozilla Network Security Services 'p12creat.c' Memory Corruption Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Mozilla Network Security Services 'p12creat.c' Memory Corruption Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Mozilla Network Security Services 'p12creat.c' Memory Corruption Vulnerability
References:
References:
- NSS Homepage (Mozilla Foundation)