[ELSA-2015-1980] nss and nspr security update

Severity Critical
Affected Packages 6
CVEs 3

nspr
[4.10.8-2]
- Resolves: Bug 1269359 - CVE-2015-7183
- nspr: heap-buffer overflow in PL_ARENA_ALLOCATE can lead to crash (under ASAN), potential memory corruption [rhel-5.11.z]

nss
[3.19.1-2]
- Resolves: Bug 1269354 - CVE-2015-7182 CVE-2015-7181

Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/nss?distro=oraclelinux-5.11 oraclelinux nss < 3.19.1-2.el5_11 oraclelinux-5.11
Affected pkg:rpm/oraclelinux/nss-tools?distro=oraclelinux-5.11 oraclelinux nss-tools < 3.19.1-2.el5_11 oraclelinux-5.11
Affected pkg:rpm/oraclelinux/nss-pkcs11-devel?distro=oraclelinux-5.11 oraclelinux nss-pkcs11-devel < 3.19.1-2.el5_11 oraclelinux-5.11
Affected pkg:rpm/oraclelinux/nss-devel?distro=oraclelinux-5.11 oraclelinux nss-devel < 3.19.1-2.el5_11 oraclelinux-5.11
Affected pkg:rpm/oraclelinux/nspr?distro=oraclelinux-5.11 oraclelinux nspr < 4.10.8-2.el5_11 oraclelinux-5.11
Affected pkg:rpm/oraclelinux/nspr-devel?distro=oraclelinux-5.11 oraclelinux nspr-devel < 4.10.8-2.el5_11 oraclelinux-5.11
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...