CVE-2011-3640
published 2011-10-28CVE-2011-3640: Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local…
PriorityP426high7.1CVSS 2.0
AVNACHAuSCCICAC
EPSS
1.40%
69.4th percentile
Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nss | < nss 3.13.1.with.ckbi.1.88-1 (bookworm) | nss 3.13.1.with.ckbi.1.88-1 (bookworm) |
| chrome | < 17.0 | 17.0 | |
| mozilla | nss | >= 0 < 3.13.1.with.ckbi.1.88-1 | 3.13.1.with.ckbi.1.88-1 |
| mozilla | nss | >= 0 < 3.13.1.with.ckbi.1.88-1 | 3.13.1.with.ckbi.1.88-1 |
| mozilla | nss | >= 0 < 3.13.1.with.ckbi.1.88-1 | 3.13.1.with.ckbi.1.88-1 |
| mozilla | nss | >= 0 < 3.13.1.with.ckbi.1.88-1 | 3.13.1.with.ckbi.1.88-1 |
CVSS provenance
nvdv2.07.1HIGHAV:N/AC:H/Au:S/C:C/I:C/A:C
osv7.1HIGH
vendor_debian7.1LOW
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-75w4-cpff-gxx5: ** DISPUTED ** Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac O
ghsa_unreviewed·2022-05-13
CVE-2011-3640 [HIGH] CWE-426 GHSA-75w4-cpff-gxx5: ** DISPUTED ** Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac O
** DISPUTED ** Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."
OSV
CVE-2011-3640: Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allo
osv·2011-10-28·CVSS 7.1
CVE-2011-3640 [HIGH] CVE-2011-3640: Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allo
Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."
Red Hat
nss: /pkcs11.txt and /secmod.db files read on initialization
vendor_redhat·2011-09-23·CVSS 7.1
CVE-2011-3640 [HIGH] nss: /pkcs11.txt and /secmod.db files read on initialization
nss: /pkcs11.txt and /secmod.db files read on initialization
Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."
Package: nss (Red Hat Enterprise Linux 4) - Not affected
Package: nss (Red Hat Enterprise Linux 5) - Not affected
Package: nss (Red Hat Enterprise Linux 6) - Affected
Debian
CVE-2011-3640: nss - Untrusted search path vulnerability in Mozilla Network Security Services (NSS), ...
vendor_debian·2011·CVSS 7.1
CVE-2011-3640 [HIGH] CVE-2011-3640: nss - Untrusted search path vulnerability in Mozilla Network Security Services (NSS), ...
Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as used in Google Chrome before 17 on Windows and Mac OS X, might allow local users to gain privileges via a Trojan horse pkcs11.txt file in a top-level directory. NOTE: the vendor's response was "Strange behavior, but we're not treating this as a security bug."
Scope: local
bookworm: resolved (fixed in 3.13.1.with.ckbi.1.88-1)
bullseye: resolved (fixed in 3.13.1.with.ckbi.1.88-1)
forky: resolved (fixed in 3.13.1.with.ckbi.1.88-1)
sid: resolved (fixed in 3.13.1.with.ckbi.1.88-1)
trixie: resolved (fixed in 3.13.1.with.ckbi.1.88-1)
No detection rules found.
No public exploits indexed.
http://blog.acrossecurity.com/2011/10/google-chrome-pkcs11txt-file-planting.htmlhttp://code.google.com/p/chromium/issues/detail?id=97426http://securityreason.com/securityalert/8483https://bugzilla.mozilla.org/show_bug.cgi?id=641052https://hermes.opensuse.org/messages/13154861https://hermes.opensuse.org/messages/13155432https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13414http://blog.acrossecurity.com/2011/10/google-chrome-pkcs11txt-file-planting.htmlhttp://code.google.com/p/chromium/issues/detail?id=97426http://securityreason.com/securityalert/8483https://bugzilla.mozilla.org/show_bug.cgi?id=641052https://hermes.opensuse.org/messages/13154861https://hermes.opensuse.org/messages/13155432https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13414
2011-10-28
Published