CVE-2019-17007
22.10.2020, 21:15
In Network Security Services before 3.44, a malformed Netscape Certificate Sequence can cause NSS to crash, resulting in a denial of service.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mozilla | network_security_services | 𝑥 < 3.44 |
| siemens | ruggedcom_rox_mx5000_firmware | 𝑥 < 2.14.0 |
| siemens | ruggedcom_rox_rx1400_firmware | 𝑥 < 2.14.0 |
| siemens | ruggedcom_rox_rx1500_firmware | 𝑥 < 2.14.0 |
| siemens | ruggedcom_rox_rx1501_firmware | 𝑥 < 2.14.0 |
| siemens | ruggedcom_rox_rx1510_firmware | 𝑥 < 2.14.0 |
| siemens | ruggedcom_rox_rx1511_firmware | 𝑥 < 2.14.0 |
| siemens | ruggedcom_rox_rx1512_firmware | 𝑥 < 2.14.0 |
| siemens | ruggedcom_rox_rx5000_firmware | 𝑥 < 2.14.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| mozilla | nss | 𝑥 < 3.44 | CNA |
Debian Releases
Ubuntu Releases
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| nspr |
| ||||||||
| nspr-devel |
| ||||||||
| nss |
| ||||||||
| nss-devel |
| ||||||||
| nss-pkcs11-devel |
| ||||||||
| nss-softokn |
| ||||||||
| nss-softokn-devel |
| ||||||||
| nss-softokn-freebl |
| ||||||||
| nss-softokn-freebl-devel |
| ||||||||
| nss-sysinit |
| ||||||||
| nss-tools |
| ||||||||
| nss-util |
| ||||||||
| nss-util-devel |
|
Common Weakness Enumeration
References