CVE-2013-0791

Source
https://nvd.nist.gov/vuln/detail/CVE-2013-0791
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2013-0791.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2013-0791
Related
Published
2013-04-03T11:56:21Z
Modified
2024-10-21T13:55:03Z
Summary
[none]
Details

The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted certificate.

References

Affected packages

Debian:11 / nss

Package

Name
nss
Purl
pkg:deb/debian/nss?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:3.14.3-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:12 / nss

Package

Name
nss
Purl
pkg:deb/debian/nss?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:3.14.3-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:13 / nss

Package

Name
nss
Purl
pkg:deb/debian/nss?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:3.14.3-1

Ecosystem specific

{
    "urgency": "unimportant"
}