Lenny Wang discovered that NSS incorrectly handled certain messages. A remote attacker could possibly use this issue to cause servers compiled with NSS to stop responding, resulting in a denial of service.
{
"binaries": [
{
"binary_version": "2:3.35-2ubuntu2.14",
"binary_name": "libnss3"
},
{
"binary_version": "2:3.35-2ubuntu2.14",
"binary_name": "libnss3-dev"
},
{
"binary_version": "2:3.35-2ubuntu2.14",
"binary_name": "libnss3-tools"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "2:3.49.1-1ubuntu1.7",
"binary_name": "libnss3"
},
{
"binary_version": "2:3.49.1-1ubuntu1.7",
"binary_name": "libnss3-dev"
},
{
"binary_version": "2:3.49.1-1ubuntu1.7",
"binary_name": "libnss3-tools"
}
],
"availability": "No subscription required"
}