[ELSA-2015-1980] nss and nspr security update
Severity
Critical
Affected Packages
6
CVEs
3
nspr
[4.10.8-2]
- Resolves: Bug 1269359 - CVE-2015-7183
- nspr: heap-buffer overflow in PL_ARENA_ALLOCATE can lead to crash (under ASAN), potential memory corruption [rhel-5.11.z]
nss
[3.19.1-2]
- Resolves: Bug 1269354 - CVE-2015-7182 CVE-2015-7181
Package | Affected Version |
---|---|
pkg:rpm/oraclelinux/nss?distro=oraclelinux-5.11 | < 3.19.1-2.el5_11 |
pkg:rpm/oraclelinux/nss-tools?distro=oraclelinux-5.11 | < 3.19.1-2.el5_11 |
pkg:rpm/oraclelinux/nss-pkcs11-devel?distro=oraclelinux-5.11 | < 3.19.1-2.el5_11 |
pkg:rpm/oraclelinux/nss-devel?distro=oraclelinux-5.11 | < 3.19.1-2.el5_11 |
pkg:rpm/oraclelinux/nspr?distro=oraclelinux-5.11 | < 4.10.8-2.el5_11 |
pkg:rpm/oraclelinux/nspr-devel?distro=oraclelinux-5.11 | < 4.10.8-2.el5_11 |
- ID
- ELSA-2015-1980
- Severity
- critical
- URL
- https://linux.oracle.com/errata/ELSA-2015-1980.html
- Published
-
2015-11-04T00:00:00
(9 years ago) - Modified
-
2015-11-04T00:00:00
(9 years ago) - Rights
- Copyright 2015 Oracle, Inc.
- Other Advisories
Source | # ID | Name | URL |
---|---|---|---|
elsa | ELSA-2015-1980 | http://linux.oracle.com/errata/ELSA-2015-1980.html | |
CVE | CVE-2015-7181 | http://linux.oracle.com/cve/CVE-2015-7181 | |
CVE | CVE-2015-7182 | http://linux.oracle.com/cve/CVE-2015-7182 | |
CVE | CVE-2015-7183 | http://linux.oracle.com/cve/CVE-2015-7183 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/oraclelinux/nss?distro=oraclelinux-5.11 | oraclelinux | nss | < 3.19.1-2.el5_11 | oraclelinux-5.11 | ||
Affected | pkg:rpm/oraclelinux/nss-tools?distro=oraclelinux-5.11 | oraclelinux | nss-tools | < 3.19.1-2.el5_11 | oraclelinux-5.11 | ||
Affected | pkg:rpm/oraclelinux/nss-pkcs11-devel?distro=oraclelinux-5.11 | oraclelinux | nss-pkcs11-devel | < 3.19.1-2.el5_11 | oraclelinux-5.11 | ||
Affected | pkg:rpm/oraclelinux/nss-devel?distro=oraclelinux-5.11 | oraclelinux | nss-devel | < 3.19.1-2.el5_11 | oraclelinux-5.11 | ||
Affected | pkg:rpm/oraclelinux/nspr?distro=oraclelinux-5.11 | oraclelinux | nspr | < 4.10.8-2.el5_11 | oraclelinux-5.11 | ||
Affected | pkg:rpm/oraclelinux/nspr-devel?distro=oraclelinux-5.11 | oraclelinux | nspr-devel | < 4.10.8-2.el5_11 | oraclelinux-5.11 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |