CVE-2017-5461
published 2017-05-11CVE-2017-5461: Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote…
PriorityP348critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
4.74%
90.9th percentile
Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | < firefox 52.0.1-1 (sid) | firefox 52.0.1-1 (sid) |
| debian | firefox-esr | < firefox 52.0.1-1 (sid) | firefox 52.0.1-1 (sid) |
| debian | nss | < firefox 52.0.1-1 (sid) | firefox 52.0.1-1 (sid) |
| mozilla | firefox | >= 0 < 53.0.2+build1-0ubuntu0.14.04.2 | 53.0.2+build1-0ubuntu0.14.04.2 |
| mozilla | firefox | >= 0 < 53.0+build6-0ubuntu0.14.04.1 | 53.0+build6-0ubuntu0.14.04.1 |
| mozilla | firefox | >= 0 < 53.0.2+build1-0ubuntu0.16.04.2 | 53.0.2+build1-0ubuntu0.16.04.2 |
| mozilla | firefox | >= 0 < 53.0+build6-0ubuntu0.16.04.1 | 53.0+build6-0ubuntu0.16.04.1 |
| mozilla | firefox | >= unspecified < 53 | 53 |
| mozilla | firefox_esr | >= unspecified < 45.9 | 45.9 |
| mozilla | firefox_esr | >= unspecified < 52.1 | 52.1 |
| mozilla | network_security_services | < 3.21.4 | 3.21.4 |
| mozilla | network_security_services | < 3.28.4 | 3.28.4 |
| mozilla | network_security_services | >= 3.29 < 3.29.5 | 3.29.5 |
| mozilla | network_security_services | >= 3.30 < 3.30.1 | 3.30.1 |
| mozilla | nss | >= 0 < 2:3.26.2-1.1 | 2:3.26.2-1.1 |
| mozilla | nss | >= 0 < 2:3.26.2-1.1 | 2:3.26.2-1.1 |
| mozilla | nss | >= 0 < 2:3.26.2-1.1 | 2:3.26.2-1.1 |
| mozilla | nss | >= 0 < 2:3.26.2-1.1 | 2:3.26.2-1.1 |
| mozilla | nss | >= 0 < 2:3.28.4-0ubuntu0.14.04.1 | 2:3.28.4-0ubuntu0.14.04.1 |
| mozilla | nss | >= 0 < 2:3.28.4-0ubuntu0.16.04.1 | 2:3.28.4-0ubuntu0.16.04.1 |
| mozilla | thunderbird | >= 0 < 1:52.1.1+build1-0ubuntu0.14.04.1 | 1:52.1.1+build1-0ubuntu0.14.04.1 |
| mozilla | thunderbird | >= 0 < 1:52.1.1+build1-0ubuntu0.16.04.1 | 1:52.1.1+build1-0ubuntu0.16.04.1 |
| mozilla | thunderbird | >= unspecified < 52.1 | 52.1 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_oracle9.8CRITICAL
vendor_redhat9.8CRITICAL
vendor_ubuntu9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Oracle
Oracle Oracle Systems Risk Matrix: XCP Firmware (NSS) — CVE-2017-5461
vendor_oracle·2021-07-15·CVSS 9.8
CVE-2017-5461 [CRITICAL] Oracle Oracle Systems Risk Matrix: XCP Firmware (NSS) — CVE-2017-5461
Oracle Oracle Systems Risk Matrix: XCP Firmware (NSS) vulnerability
CVE: CVE-2017-5461
CVSS: 9.8
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2021 (JUL 2021)
Ubuntu
NSS vulnerability
vendor_ubuntu·2017-07-31·CVSS 7.5
CVE-2017-7502 [HIGH] NSS vulnerability
Title: NSS vulnerability
Summary: Several security issues were fixed in NSS.
It was discovered that NSS incorrectly handled certain empty SSLv2
messages. A remote attacker could possibly use this issue to cause NSS to
crash, resulting in a denial of service. (CVE-2017-7502)
Karthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES
ciphers were vulnerable to birthday attacks. A remote attacker could
possibly use this flaw to obtain clear text data from long encrypted
sessions. This update causes NSS to limit use of the same symmetric key.
(CVE-2016-2183)
It was discovered that NSS incorrectly handled Base64 decoding. A remote
attacker could use this flaw to cause NSS to crash, resulting in a denial
of service, or possibly execute arbitrary code. (CVE-2017-5461)
Instru
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2017-05-16·CVSS 9.8
CVE-2017-5429 [CRITICAL] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted message, an attacker could
potentially exploit these to read uninitialized memory, cause a denial of
service via application crash, or execute arbitrary code. (CVE-2017-5429,
CVE-2017-5430, CVE-2017-5436, CVE-2017-5443, CVE-2017-5444, CVE-2017-5445,
CVE-2017-5446, CVE-2017-5447, CVE-2017-5461, CVE-2017-5467)
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to spoof the addressbar
contents, conduct cross-site scripting (XSS) attacks, cause a den
Ubuntu
Firefox regression
vendor_ubuntu·2017-05-11·CVSS 9.8
[CRITICAL] Firefox regression
Title: Firefox regression
Summary: USN-3260-1 caused a regression in Firefox.
USN-3260-1 fixed vulnerabilities in Firefox. The update caused the
date picker panel and form validation errors to close immediately on
opening. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, obtain sensitive
information, spoof the addressbar contents or other UI elements, escape
the sandbox to read local files, conduct cross-site scripting (XSS)
attacks, cause a denial of service via application crash, or execute
arbitrary code. (CVE-2017-5429, CVE-2017-5430, CVE-2017-543
Ubuntu
NSS vulnerabilities
vendor_ubuntu·2017-04-27·CVSS 7.5
CVE-2016-2183 [HIGH] NSS vulnerabilities
Title: NSS vulnerabilities
Summary: Several security issues were fixed in NSS.
Karthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES
ciphers were vulnerable to birthday attacks. A remote attacker could
possibly use this flaw to obtain clear text data from long encrypted
sessions. This update causes NSS to limit use of the same symmetric key.
(CVE-2016-2183)
It was discovered that NSS incorrectly handled Base64 decoding. A remote
attacker could use this flaw to cause NSS to crash, resulting in a denial
of service, or possibly execute arbitrary code. (CVE-2017-5461)
This update refreshes the NSS package to version 3.28.4 which includes
the latest CA certificate bundle.
Instructions: This update uses a new upstream release, which includes additional bug
fixes. After
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2017-04-21·CVSS 9.8
CVE-2017-5429 [CRITICAL] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, obtain sensitive
information, spoof the addressbar contents or other UI elements, escape
the sandbox to read local files, conduct cross-site scripting (XSS)
attacks, cause a denial of service via application crash, or execute
arbitrary code. (CVE-2017-5429, CVE-2017-5430, CVE-2017-5432,
CVE-2017-5433, CVE-2017-5434, CVE-2017-5435, CVE-2017-5436, CVE-2017-5437,
CVE-2017-5438, CVE-2017-5439, CVE-2017-5440, CVE-2017-5441, CVE-2017-5442,
CVE-2017-5443, CVE-2017-5444, CV
Red Hat
nss: Write beyond bounds caused by bugs in Base64 de/encoding in nssb64d.c and nssb64e.c (MFSA 2017-10)
vendor_redhat·2017-04-19·CVSS 9.8
CVE-2017-5461 [CRITICAL] nss: Write beyond bounds caused by bugs in Base64 de/encoding in nssb64d.c and nssb64e.c (MFSA 2017-10)
nss: Write beyond bounds caused by bugs in Base64 de/encoding in nssb64d.c and nssb64e.c (MFSA 2017-10)
Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.
An out-of-bounds write flaw was found in the way NSS performed certain Base64-decoding operations. An attacker could use this flaw to create a specially crafted certificate which, when parsed by NSS, could cause it to crash or execute arbitrary code, using the permissions of the user running an application compiled against the NSS library.
Statement: The security flaw exists in NSS library B
Debian
CVE-2017-5461: firefox - Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x bef...
vendor_debian·2017·CVSS 9.8
CVE-2017-5461 [CRITICAL] CVE-2017-5461: firefox - Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x bef...
Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.
Scope: local
sid: resolved (fixed in 52.0.1-1)
GHSA
GHSA-f438-mjv4-rwx8: Mozilla Network Security Services (NSS) before 3
ghsa_unreviewed·2022-05-13
CVE-2017-5461 [CRITICAL] CWE-787 GHSA-f438-mjv4-rwx8: Mozilla Network Security Services (NSS) before 3
Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.
OSV
thunderbird vulnerabilities
osv·2017-05-16·CVSS 9.8
CVE-2017-5429 [CRITICAL] thunderbird vulnerabilities
thunderbird vulnerabilities
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted message, an attacker could
potentially exploit these to read uninitialized memory, cause a denial of
service via application crash, or execute arbitrary code. (CVE-2017-5429,
CVE-2017-5430, CVE-2017-5436, CVE-2017-5443, CVE-2017-5444, CVE-2017-5445,
CVE-2017-5446, CVE-2017-5447, CVE-2017-5461, CVE-2017-5467)
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to spoof the addressbar
contents, conduct cross-site scripting (XSS) attacks, cause a denial of
service via application crash, or execute arbitrary code. (CV
OSV
firefox regression
osv·2017-05-11·CVSS 9.8
[CRITICAL] firefox regression
firefox regression
USN-3260-1 fixed vulnerabilities in Firefox. The update caused the
date picker panel and form validation errors to close immediately on
opening. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, obtain sensitive
information, spoof the addressbar contents or other UI elements, escape
the sandbox to read local files, conduct cross-site scripting (XSS)
attacks, cause a denial of service via application crash, or execute
arbitrary code. (CVE-2017-5429, CVE-2017-5430, CVE-2017-5432,
CVE-2017-5433, CVE-2017-5434, CVE-2017-5435, CVE-2017-543
OSV
CVE-2017-5461: Mozilla Network Security Services (NSS) before 3
osv·2017-05-11·CVSS 9.8
CVE-2017-5461 [CRITICAL] CVE-2017-5461: Mozilla Network Security Services (NSS) before 3
Mozilla Network Security Services (NSS) before 3.21.4, 3.22.x through 3.28.x before 3.28.4, 3.29.x before 3.29.5, and 3.30.x before 3.30.1 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by leveraging incorrect base64 operations.
OSV
nss vulnerabilities
osv·2017-04-27·CVSS 7.5
CVE-2016-2183 [HIGH] nss vulnerabilities
nss vulnerabilities
Karthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DES
ciphers were vulnerable to birthday attacks. A remote attacker could
possibly use this flaw to obtain clear text data from long encrypted
sessions. This update causes NSS to limit use of the same symmetric key.
(CVE-2016-2183)
It was discovered that NSS incorrectly handled Base64 decoding. A remote
attacker could use this flaw to cause NSS to crash, resulting in a denial
of service, or possibly execute arbitrary code. (CVE-2017-5461)
This update refreshes the NSS package to version 3.28.4 which includes
the latest CA certificate bundle.
OSV
firefox vulnerabilities
osv·2017-04-21·CVSS 9.8
CVE-2017-5429 [CRITICAL] firefox vulnerabilities
firefox vulnerabilities
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, obtain sensitive
information, spoof the addressbar contents or other UI elements, escape
the sandbox to read local files, conduct cross-site scripting (XSS)
attacks, cause a denial of service via application crash, or execute
arbitrary code. (CVE-2017-5429, CVE-2017-5430, CVE-2017-5432,
CVE-2017-5433, CVE-2017-5434, CVE-2017-5435, CVE-2017-5436, CVE-2017-5437,
CVE-2017-5438, CVE-2017-5439, CVE-2017-5440, CVE-2017-5441, CVE-2017-5442,
CVE-2017-5443, CVE-2017-5444, CVE-2017-5445, CVE-2017-5446, CVE-2017-5447,
CVE-2017-5448, CVE-2017-5449, CVE-2017-5451, CVE-2017-5453, CVE-2017-
No detection rules found.
No public exploits indexed.
http://www.debian.org/security/2017/dsa-3831http://www.debian.org/security/2017/dsa-3872http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.htmlhttp://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.htmlhttp://www.securityfocus.com/bid/98050http://www.securitytracker.com/id/1038320https://access.redhat.com/errata/RHSA-2017:1100https://access.redhat.com/errata/RHSA-2017:1101https://access.redhat.com/errata/RHSA-2017:1102https://access.redhat.com/errata/RHSA-2017:1103https://bugzilla.mozilla.org/show_bug.cgi?id=1344380https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.21.4_release_noteshttps://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.28.4_release_noteshttps://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.29.5_release_noteshttps://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.30.1_release_noteshttps://security.gentoo.org/glsa/201705-04https://www.mozilla.org/en-US/security/advisories/mfsa2017-10/#CVE-2017-5461https://www.mozilla.org/en-US/security/advisories/mfsa2017-11/#CVE-2017-5461https://www.mozilla.org/en-US/security/advisories/mfsa2017-12/#CVE-2017-5461https://www.mozilla.org/en-US/security/advisories/mfsa2017-13/#CVE-2017-5461https://www.oracle.com//security-alerts/cpujul2021.htmlhttp://www.debian.org/security/2017/dsa-3831http://www.debian.org/security/2017/dsa-3872http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.htmlhttp://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.htmlhttp://www.securityfocus.com/bid/98050http://www.securitytracker.com/id/1038320https://access.redhat.com/errata/RHSA-2017:1100https://access.redhat.com/errata/RHSA-2017:1101https://access.redhat.com/errata/RHSA-2017:1102https://access.redhat.com/errata/RHSA-2017:1103https://bugzilla.mozilla.org/show_bug.cgi?id=1344380https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.21.4_release_noteshttps://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.28.4_release_noteshttps://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.29.5_release_noteshttps://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.30.1_release_noteshttps://security.gentoo.org/glsa/201705-04https://www.mozilla.org/en-US/security/advisories/mfsa2017-10/#CVE-2017-5461https://www.mozilla.org/en-US/security/advisories/mfsa2017-11/#CVE-2017-5461https://www.mozilla.org/en-US/security/advisories/mfsa2017-12/#CVE-2017-5461https://www.mozilla.org/en-US/security/advisories/mfsa2017-13/#CVE-2017-5461https://www.oracle.com//security-alerts/cpujul2021.html
2017-05-11
Published