Lucene search

K
ubuntuUbuntuUSN-2343-1
HistorySep 09, 2014 - 12:00 a.m.

NSS vulnerability

2014-09-0900:00:00
ubuntu.com
48

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.7

Confidence

High

EPSS

0.106

Percentile

95.1%

Releases

  • Ubuntu 14.04 ESM
  • Ubuntu 12.04
  • Ubuntu 10.04

Packages

  • nss - Network Security Service library

Details

Tyson Smith and Jesse Schwartzentruber discovered that NSS contained a race
condition when performing certificate validation. An attacker could use
this issue to cause NSS to crash, resulting in a denial of service, or
possibly execute arbitrary code.

OSVersionArchitecturePackageVersionFilename
Ubuntu14.04noarchlibnss3< 2:3.15.4-1ubuntu7.1UNKNOWN
Ubuntu14.04noarchlibnss3-1d< 2:3.15.4-1ubuntu7.1UNKNOWN
Ubuntu14.04noarchlibnss3-dbg< 2:3.15.4-1ubuntu7.1UNKNOWN
Ubuntu14.04noarchlibnss3-dev< 2:3.15.4-1ubuntu7.1UNKNOWN
Ubuntu14.04noarchlibnss3-tools< 2:3.15.4-1ubuntu7.1UNKNOWN
Ubuntu12.04noarchlibnss3< 3.15.4-0ubuntu0.12.04.3UNKNOWN
Ubuntu12.04noarchlibnss3-1d< 3.15.4-0ubuntu0.12.04.3UNKNOWN
Ubuntu12.04noarchlibnss3-dbg< 3.15.4-0ubuntu0.12.04.3UNKNOWN
Ubuntu12.04noarchlibnss3-dev< 3.15.4-0ubuntu0.12.04.3UNKNOWN
Ubuntu12.04noarchlibnss3-tools< 3.15.4-0ubuntu0.12.04.3UNKNOWN
Rows per page:
1-10 of 151

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.7

Confidence

High

EPSS

0.106

Percentile

95.1%