CVE-2019-11745
published 2020-01-08CVE-2019-11745: When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur…
PriorityP342high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
2.99%
85.8th percentile
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur. This could have caused heap corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | nss | < nss 2:3.47.1-1 (bookworm) | nss 2:3.47.1-1 (bookworm) |
| mozilla | firefox | < 71.0 | 71.0 |
| mozilla | firefox | — | — |
| mozilla | firefox_esr | < 68.3 | 68.3 |
| mozilla | firefox_esr | — | — |
| mozilla | nss | >= 0 < 2:3.47.1-1 | 2:3.47.1-1 |
| mozilla | nss | >= 0 < 2:3.47.1-1 | 2:3.47.1-1 |
| mozilla | nss | >= 0 < 2:3.47.1-1 | 2:3.47.1-1 |
| mozilla | nss | >= 0 < 2:3.47.1-1 | 2:3.47.1-1 |
| mozilla | thunderbird | < 68.3.0 | 68.3.0 |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | >= 0 < 1:68.7.0+build1-0ubuntu0.16.04.2 | 1:68.7.0+build1-0ubuntu0.16.04.2 |
| mozilla | thunderbird | >= 0 < 1:68.4.1+build1-0ubuntu0.18.04.1 | 1:68.4.1+build1-0ubuntu0.18.04.1 |
| opensuse | leap | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| siemens | ruggedcom_rox_mx5000_firmware | < 2.14.0 | 2.14.0 |
| siemens | ruggedcom_rox_rx1400_firmware | < 2.14.0 | 2.14.0 |
| siemens | ruggedcom_rox_rx1500_firmware | < 2.14.0 | 2.14.0 |
| siemens | ruggedcom_rox_rx1501_firmware | < 2.14.0 | 2.14.0 |
| siemens | ruggedcom_rox_rx1510_firmware | < 2.14.0 | 2.14.0 |
| siemens | ruggedcom_rox_rx1511_firmware | < 2.14.0 | 2.14.0 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
vendor_ubuntu8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens RUGGEDCOM ROX II
cisa_ics·2021-02-09·CVSS 5.9
[MEDIUM] Siemens RUGGEDCOM ROX II
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens RUGGEDCOM ROX II
Last RevisedFebruary 09, 2021
Alert CodeICSA-21-040-04
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low skill level to exploit
- Vendor: Siemens
- Equipment: RUGGEDCOM ROX IIB
- Vulnerabilities: Improper Input Validation, NULL Pointer Dereference, Out-of-Bounds Write, Insufficient Verification of Data Authenticity, Improper Certificate Validation, Out-of-bounds Read
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities could allow the decryption of encrypted content, possible code execution, or cause a sy
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2020-04-21·CVSS 8.8
CVE-2019-11745 [HIGH] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
obtain sensitive information, bypass security restrictions, bypass
same-origin restrictions, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11757, CVE-2019-11758, CVE-2019-11759,
CVE-2019-11760, CVE-2019-11761, CVE-2019-11762, CVE-2019-11763,
CVE-2019-11764, CVE-2019-17005, CVE-2019-17008, CVE-2019-17010,
CVE-2019-17011, CVE-2019-17012, CVE-2019-17016, CVE-2019-17017,
CVE-2019-17022, CVE-2019-17024, CVE-2019-17026, CVE-2019-20503,
CVE-2020-6798,
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2020-01-16·CVSS 8.8
CVE-2019-11745 [HIGH] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
conduct cross-site scripting (XSS) attacks, or execute arbitrary code.
(CVE-2019-17005, CVE-2019-17008, CVE-2019-17010, CVE-2019-17011,
CVE-2019-17012, CVE-2019-17016, CVE-2019-17017, CVE-2019-17022,
CVE-2019-17024, CVE-2019-17026)
It was discovered that NSS incorrectly handled certain memory operations.
A remote attacker could potentially exploit this to cause a denial of
service, or execute arbitrary code. (CVE-2019-11745)
Instructions: After a standard system update you need
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2019-12-13
CVE-2019-11745 Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
USN-4216-1 fixed vulnerabilities in Firefox. This update provides the
corresponding update for Ubuntu 16.04 LTS.
Original advisory details:
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, obtain sensitive
information, or execute arbitrary code.
Instructions: After a standard system update you need to restart Firefox to make
all the necessary changes.
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2019-12-09
CVE-2019-11745 Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Multiple security issues were discovered in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, obtain sensitive
information, or execute arbitrary code.
Instructions: After a standard system update you need to restart Firefox to make
all the necessary changes.
Ubuntu
NSS vulnerability
vendor_ubuntu·2019-11-27
CVE-2019-11745 NSS vulnerability
Title: NSS vulnerability
Summary: NSS could be made to crash or run programs if it received specially crafted
input.
It was discovered that NSS incorrectly handled certain memory operations. A
remote attacker could use this issue to cause NSS to crash, resulting in a
denial of service, or possibly execute arbitrary code.
Instructions: After a standard system update you need to restart any applications that
use NSS, such as Evolution, to make all the necessary changes.
Ubuntu
NSS vulnerability
vendor_ubuntu·2019-11-27
CVE-2019-11745 NSS vulnerability
Title: NSS vulnerability
Summary: NSS could be made to crash or run programs if it received specially crafted
input.
USN-4203-1 fixed a vulnerability in NSS. This update provides
the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
Original advisory details:
It was discovered that NSS incorrectly handled certain memory operations. A
remote attacker could use this issue to cause NSS to crash, resulting in a
denial of service, or possibly execute arbitrary code.
Instructions: After a standard system update you need to restart any applications that
use NSS, such as Evolution, to make all the necessary changes.
Red Hat
nss: Out-of-bounds write when passing an output buffer smaller than the block size to NSC_EncryptUpdate
vendor_redhat·2019-11-21·CVSS 8.8
CVE-2019-11745 [HIGH] CWE-787 nss: Out-of-bounds write when passing an output buffer smaller than the block size to NSC_EncryptUpdate
nss: Out-of-bounds write when passing an output buffer smaller than the block size to NSC_EncryptUpdate
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur. This could have caused heap corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
A heap-based buffer overflow was found in the NSC_EncryptUpdate() function in Mozilla nss. A remote attacker could trigger this flaw via SRTP encrypt or decrypt operations, to execute arbitrary code with the permissions of the user running the application (compiled with nss). While the attack complexity is high, the impact to confidentiality, integrity, and availability are
Debian
CVE-2019-11745: nss - When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made wit...
vendor_debian·2019·CVSS 8.8
CVE-2019-11745 [HIGH] CVE-2019-11745: nss - When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made wit...
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur. This could have caused heap corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
Scope: local
bookworm: resolved (fixed in 2:3.47.1-1)
bullseye: resolved (fixed in 2:3.47.1-1)
forky: resolved (fixed in 2:3.47.1-1)
sid: resolved (fixed in 2:3.47.1-1)
trixie: resolved (fixed in 2:3.47.1-1)
GHSA
GHSA-gmvm-jpfj-v3f5: When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could
ghsa_unreviewed·2022-05-24
CVE-2019-11745 [MEDIUM] CWE-787 GHSA-gmvm-jpfj-v3f5: When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur. This could have caused heap corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
OSV
thunderbird vulnerabilities
osv·2020-04-21·CVSS 8.8
CVE-2019-11757 [HIGH] thunderbird vulnerabilities
thunderbird vulnerabilities
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
obtain sensitive information, bypass security restrictions, bypass
same-origin restrictions, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11757, CVE-2019-11758, CVE-2019-11759,
CVE-2019-11760, CVE-2019-11761, CVE-2019-11762, CVE-2019-11763,
CVE-2019-11764, CVE-2019-17005, CVE-2019-17008, CVE-2019-17010,
CVE-2019-17011, CVE-2019-17012, CVE-2019-17016, CVE-2019-17017,
CVE-2019-17022, CVE-2019-17024, CVE-2019-17026, CVE-2019-20503,
CVE-2020-6798, CVE-2020-6800, CVE-2020-6805, CVE-2020-6806, CVE-2020-6807,
CVE-2020
OSV
thunderbird vulnerabilities
osv·2020-01-16·CVSS 8.8
CVE-2019-17005 [HIGH] thunderbird vulnerabilities
thunderbird vulnerabilities
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
conduct cross-site scripting (XSS) attacks, or execute arbitrary code.
(CVE-2019-17005, CVE-2019-17008, CVE-2019-17010, CVE-2019-17011,
CVE-2019-17012, CVE-2019-17016, CVE-2019-17017, CVE-2019-17022,
CVE-2019-17024, CVE-2019-17026)
It was discovered that NSS incorrectly handled certain memory operations.
A remote attacker could potentially exploit this to cause a denial of
service, or execute arbitrary code. (CVE-2019-11745)
OSV
CVE-2019-11745: When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could
osv·2020-01-08·CVSS 8.8
CVE-2019-11745 [HIGH] CVE-2019-11745: When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur. This could have caused heap corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-01/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-01/msg00006.htmlhttps://access.redhat.com/errata/RHSA-2020:0243https://access.redhat.com/errata/RHSA-2020:0466https://bugzilla.mozilla.org/show_bug.cgi?id=1586176https://cert-portal.siemens.com/productcert/pdf/ssa-379803.pdfhttps://lists.debian.org/debian-lts-announce/2020/09/msg00029.htmlhttps://security.gentoo.org/glsa/202003-02https://security.gentoo.org/glsa/202003-10https://security.gentoo.org/glsa/202003-37https://us-cert.cisa.gov/ics/advisories/icsa-21-040-04https://usn.ubuntu.com/4241-1/https://usn.ubuntu.com/4335-1/https://www.mozilla.org/security/advisories/mfsa2019-36/https://www.mozilla.org/security/advisories/mfsa2019-37/https://www.mozilla.org/security/advisories/mfsa2019-38/http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-01/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-01/msg00006.htmlhttps://access.redhat.com/errata/RHSA-2020:0243https://access.redhat.com/errata/RHSA-2020:0466https://bugzilla.mozilla.org/show_bug.cgi?id=1586176https://cert-portal.siemens.com/productcert/pdf/ssa-379803.pdfhttps://lists.debian.org/debian-lts-announce/2020/09/msg00029.htmlhttps://security.gentoo.org/glsa/202003-02https://security.gentoo.org/glsa/202003-10https://security.gentoo.org/glsa/202003-37https://us-cert.cisa.gov/ics/advisories/icsa-21-040-04https://usn.ubuntu.com/4241-1/https://usn.ubuntu.com/4335-1/https://www.mozilla.org/security/advisories/mfsa2019-36/https://www.mozilla.org/security/advisories/mfsa2019-37/https://www.mozilla.org/security/advisories/mfsa2019-38/
2020-01-08
Published