Back to search
CVE-2017-7502
Published: May 30, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty SSLv2 messages resulting into denial of service by remote attacker.
| Vendor | Product | Versions |
|---|---|---|
NSS project | nss | affected since 3.24.0 |
Weaknesses (CWE)
References
RHSA-2017:1365
vendor-advisory
x_refsource_REDHAT
1038579
vdb-entry
x_refsource_SECTRACK
98744
vdb-entry
x_refsource_BID
RHSA-2017:1712
vendor-advisory
x_refsource_REDHAT
http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html
x_refsource_CONFIRM
https://hg.mozilla.org/projects/nss/rev/55ea60effd0d
x_refsource_CONFIRM
RHSA-2017:1364
vendor-advisory
x_refsource_REDHAT
RHSA-2017:1567
vendor-advisory
x_refsource_REDHAT
DSA-3872
vendor-advisory
x_refsource_DEBIAN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now