Lucene search

K
ubuntuUbuntuUSN-2265-1
HistoryJul 02, 2014 - 12:00 a.m.

NSPR vulnerability

2014-07-0200:00:00
ubuntu.com
42

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.9

Confidence

High

EPSS

0.07

Percentile

94.0%

Releases

  • Ubuntu 14.04 ESM
  • Ubuntu 13.10
  • Ubuntu 12.04
  • Ubuntu 10.04

Packages

  • nspr - NetScape Portable Runtime Library

Details

Abhishek Arya discovered that NSPR incorrectly handled certain console
functions. A remote attacker could use this issue to cause NSPR to crash,
resulting in a denial of service, or possibly execute arbitrary code. The
default compiler options for affected releases should reduce the
vulnerability to a denial of service.

OSVersionArchitecturePackageVersionFilename
Ubuntu14.04noarchlibnspr4< 2:4.10.2-1ubuntu1.1UNKNOWN
Ubuntu14.04noarchlibnspr4-0d< 2:4.10.2-1ubuntu1.1UNKNOWN
Ubuntu14.04noarchlibnspr4-dbg< 2:4.10.2-1ubuntu1.1UNKNOWN
Ubuntu14.04noarchlibnspr4-dev< 2:4.10.2-1ubuntu1.1UNKNOWN
Ubuntu13.10noarchlibnspr4< 2:4.9.5-1ubuntu1.2UNKNOWN
Ubuntu13.10noarchlibnspr4-0d< 2:4.9.5-1ubuntu1.2UNKNOWN
Ubuntu13.10noarchlibnspr4-dbg< 2:4.9.5-1ubuntu1.2UNKNOWN
Ubuntu13.10noarchlibnspr4-dev< 2:4.9.5-1ubuntu1.2UNKNOWN
Ubuntu12.04noarchlibnspr4< 4.9.5-0ubuntu0.12.04.3UNKNOWN
Ubuntu12.04noarchlibnspr4-0d< 4.9.5-0ubuntu0.12.04.3UNKNOWN
Rows per page:
1-10 of 151

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.9

Confidence

High

EPSS

0.07

Percentile

94.0%