Lucene search

K
redhatRedHatRHSA-2013:1840
HistoryDec 16, 2013 - 12:00 a.m.

(RHSA-2013:1840) Important: nss security update

2013-12-1600:00:00
access.redhat.com
18

0.091 Low

EPSS

Percentile

94.7%

Network Security Services (NSS) is a set of libraries designed to support
the cross-platform development of security-enabled client and server
applications.

A flaw was found in the way NSS handled invalid handshake packets. A remote
attacker could use this flaw to cause a TLS/SSL client using NSS to crash
or, possibly, execute arbitrary code with the privileges of the user
running the application. (CVE-2013-5605)

All NSS users should upgrade to these updated packages, which contain a
backported patch to correct this issue. After installing this update,
applications using NSS must be restarted for the changes to take effect.