CVE-2016-2834

Mozilla Network Security Services (NSS) before 3.23, as used in Mozilla Firefox before 47.0, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
mozillaCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
VendorProductVersion
canonicalubuntu_linux
12.04
canonicalubuntu_linux
14.04
canonicalubuntu_linux
15.10
canonicalubuntu_linux
16.04
opensuseleap
42.1
opensuseopensuse
13.1
opensuseopensuse
13.2
mozillanetwork_security_services
𝑥
≤ 3.22
mozillafirefox
𝑥
≤ 46.0.1
novellsuse_linux_enterprise_software_development_kit
12.0
novellsuse_linux_enterprise_software_development_kit
12.0:sp1
novellsuse_linux_enterprise_desktop
12.0
novellsuse_linux_enterprise_desktop
12.0:sp1
novellsuse_linux_enterprise_server
12.0
novellsuse_linux_enterprise_server
12.0:sp1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
firefox
sid
132.0.1-1
fixed
firefox-esr
bullseye
115.14.0esr-1~deb11u1
fixed
bullseye (security)
128.4.0esr-1~deb11u1
fixed
bookworm
115.14.0esr-1~deb12u1
fixed
bookworm (security)
128.4.0esr-1~deb12u1
fixed
trixie
128.3.1esr-2
fixed
sid
128.4.0esr-1
fixed
nss
bullseye
2:3.61-1+deb11u3
fixed
bullseye (security)
2:3.61-1+deb11u4
fixed
bookworm
2:3.87.1-1
fixed
sid
2:3.105-2
fixed
trixie
2:3.105-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
firefox
artful
Fixed 47.0+build3-0ubuntu1
released
zesty
Fixed 47.0+build3-0ubuntu1
released
yakkety
Fixed 47.0+build3-0ubuntu1
released
xenial
Fixed 47.0+build3-0ubuntu0.16.04.1
released
wily
Fixed 47.0+build3-0ubuntu0.15.10.1
released
trusty
Fixed 47.0+build3-0ubuntu0.14.04.1
released
precise
Fixed 47.0+build3-0ubuntu0.12.04.1
released
nss
artful
not-affected
zesty
not-affected
yakkety
not-affected
xenial
Fixed 2:3.23-0ubuntu0.16.04.1
released
wily
Fixed 2:3.23-0ubuntu0.15.10.1
released
trusty
Fixed 2:3.23-0ubuntu0.14.04.1
released
precise
Fixed 2:3.23-0ubuntu0.12.04.1
released
thunderbird
artful
Fixed 1:52.4.0+build1-0ubuntu2
released
zesty
Fixed 1:52.4.0+build1-0ubuntu0.17.04.2
released
yakkety
ignored
xenial
Fixed 1:52.4.0+build1-0ubuntu0.16.04.2
released
wily
ignored
trusty
Fixed 1:52.4.0+build1-0ubuntu0.14.04.2
released
precise
ignored
References