vulnerability

Amazon Linux AMI: CVE-2017-7502: Security patch for nss (ALAS-2017-848)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
2017-05-30
Added
2017-06-23
Modified
2018-02-02

Description

Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty SSLv2 messages resulting into denial of service by remote attacker.

Solution

amazon-linux-upgrade-nss
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.