CVE-2013-0791
published 2013-04-03CVE-2013-0791: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5…
PriorityP425medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
5.21%
91.6th percentile
The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted certificate.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | nss | < nss 2:3.14.3-1 (bookworm) | nss 2:3.14.3-1 (bookworm) |
| mozilla | firefox | <= 20.0 | — |
| mozilla | firefox | >= 17.0 < 17.0.5 | 17.0.5 |
| mozilla | network_security_services | < 3.15 | 3.15 |
| mozilla | nss | >= 0 < 2:3.14.3-1 | 2:3.14.3-1 |
| mozilla | nss | >= 0 < 2:3.14.3-1 | 2:3.14.3-1 |
| mozilla | nss | >= 0 < 2:3.14.3-1 | 2:3.14.3-1 |
| mozilla | nss | >= 0 < 2:3.14.3-1 | 2:3.14.3-1 |
| mozilla | seamonkey | < 2.17 | 2.17 |
| mozilla | thunderbird | < 17.0.5 | 17.0.5 |
| mozilla | thunderbird_esr | >= 17.0 < 17.0.5 | 17.0.5 |
| oracle | vm_server | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_workstation | — | — |
| redhat | enterprise_linux_workstation | — | — |
| vmware | vmware_esxi | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_ubuntu10.0CRITICAL
vendor_debian5.0LOW
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7x34-3f9v-qrcr: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20
ghsa_unreviewed·2022-05-17
CVE-2013-0791 [MEDIUM] CWE-119 GHSA-7x34-3f9v-qrcr: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20
The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted certificate.
OSV
CVE-2013-0791: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20
osv·2013-04-03·CVSS 5.0
CVE-2013-0791 [MEDIUM] CVE-2013-0791: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20
The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted certificate.
VMware
VMware Workstation, Fusion, ESXi and ESX patches address a guest privilege escalation
vendor_vmware·2013-12-03·CVSS 7.9
CVE-2013-0791 [HIGH] VMware Workstation, Fusion, ESXi and ESX patches address a guest privilege escalation
VMSA-2013-0014: VMware Workstation, Fusion, ESXi and ESX patches address a guest privilege escalation
a. VMware LGTOSYNC privilege escalation. VMware ESX, Workstation and Fusion contain a vulnerability in the handling of control code in lgtosync.sys. A local malicious user may exploit this vulnerability to manipulate the memory allocation. This could result in a privilege escalation on 32-bit Guest Operating Systems running Windows 2000 Server, Windows XP or Windows 2003 Server on ESXi and ESX; or Windows XP on Workstation and Fusion. The vulnerability does not allow for privilege escalation from the Guest Operating System to the host. This means that host memory can not be manipulated from the Guest Operating System. VMware would like to thank Derek Soeder of Cylance, Inc. for reporting
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2013-04-08·CVSS 10.0
CVE-2013-0788 [CRITICAL] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Olli Pettay, Jesse Ruderman, Boris Zbarsky, Christian Holler, Milan
Sreckovic and Joe Drew discovered multiple memory safety issues affecting
Thunderbird. If the user were tricked into opening a specially crafted
message with scripting enabled, an attacker could possibly exploit these
to cause a denial of service via application crash, or potentially
execute code with the privileges of the user invoking Thunderbird.
(CVE-2013-0788)
Ambroz Bizjak discovered an out-of-bounds array read in the
CERT_DecodeCertPackage function of the Network Security Services (NSS)
libary when decoding certain certificates. An attacker could potentially
exploit this to cause a denial of service via application cras
Ubuntu
Unity Firefox Extension update
vendor_ubuntu·2013-04-04·CVSS 10.0
[CRITICAL] Unity Firefox Extension update
Title: Unity Firefox Extension update
Summary: This update provides a compatible version of Unity Firefox Extension for
Firefox 20.
USN-1786-1 fixed vulnerabilities in Firefox. This update provides the
corresponding update for Unity Firefox Extension.
Original advisory details:
Olli Pettay, Jesse Ruderman, Boris Zbarsky, Christian Holler, Milan
Sreckovic, Joe Drew, Andrew McCreight, Randell Jesup, Gary Kwong and
Mats Palmgren discovered multiple memory safety issues affecting Firefox.
If the user were tricked into opening a specially crafted page, an
attacker could possibly exploit these to cause a denial of service via
application crash, or potentially execute code with the privileges of the
user invoking Firefox. (CVE-2013-0788, CVE-2013-0789)
Ambroz Bizjak discovered an out-of-boun
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2013-04-04·CVSS 10.0
CVE-2013-0788 [CRITICAL] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Olli Pettay, Jesse Ruderman, Boris Zbarsky, Christian Holler, Milan
Sreckovic, Joe Drew, Andrew McCreight, Randell Jesup, Gary Kwong and
Mats Palmgren discovered multiple memory safety issues affecting Firefox.
If the user were tricked into opening a specially crafted page, an
attacker could possibly exploit these to cause a denial of service via
application crash, or potentially execute code with the privileges of the
user invoking Firefox. (CVE-2013-0788, CVE-2013-0789)
Ambroz Bizjak discovered an out-of-bounds array read in the
CERT_DecodeCertPackage function of the Network Security Services (NSS)
libary when decoding certain certificates. An attacker
Red Hat
Mozilla: Out-of-bounds array read in CERT_DecodeCertPackage (MFSA 2013-40)
vendor_redhat·2013-04-02·CVSS 5.0
CVE-2013-0791 [MEDIUM] Mozilla: Out-of-bounds array read in CERT_DecodeCertPackage (MFSA 2013-40)
Mozilla: Out-of-bounds array read in CERT_DecodeCertPackage (MFSA 2013-40)
The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted certificate.
Debian
CVE-2013-0791: nss - The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), ...
vendor_debian·2013·CVSS 5.0
CVE-2013-0791 [MEDIUM] CVE-2013-0791: nss - The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), ...
The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption) via a crafted certificate.
Scope: local
bookworm: resolved (fixed in 2:3.14.3-1)
bullseye: resolved (fixed in 2:3.14.3-1)
forky: resolved (fixed in 2:3.14.3-1)
sid: resolved (fixed in 2:3.14.3-1)
trixie: resolved (fixed in 2:3.14.3-1)
No detection rules found.
No public exploits indexed.
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10761http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-04/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-04/msg00013.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-05/msg00019.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1135.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1144.htmlhttp://www.mozilla.org/security/announce/2013/mfsa2013-40.htmlhttp://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.htmlhttp://www.securityfocus.com/bid/58826http://www.ubuntu.com/usn/USN-1791-1https://bugzilla.mozilla.org/show_bug.cgi?id=629816https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17150http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10761http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-04/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-04/msg00013.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-05/msg00019.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1135.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1144.htmlhttp://www.mozilla.org/security/announce/2013/mfsa2013-40.htmlhttp://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.htmlhttp://www.securityfocus.com/bid/58826http://www.ubuntu.com/usn/USN-1791-1https://bugzilla.mozilla.org/show_bug.cgi?id=629816https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17150
2013-04-03
Published