vulnerability

Huawei EulerOS: CVE-2017-5461: nss and nss-util security update

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
05/10/2017
Added
01/18/2018
Modified
04/25/2025

Description

An out-of-bounds write flaw was found in the way NSS performed certain Base64-decoding operations. An attacker could use this flaw to create a specially crafted certificate which, when parsed by NSS, could cause it to crash or execute arbitrary code, using the permissions of the user running an application compiled against the NSS library.

Solution(s)

huawei-euleros-2_0_sp1-upgrade-nsshuawei-euleros-2_0_sp1-upgrade-nss-develhuawei-euleros-2_0_sp1-upgrade-nss-sysinithuawei-euleros-2_0_sp1-upgrade-nss-toolshuawei-euleros-2_0_sp1-upgrade-nss-utilhuawei-euleros-2_0_sp1-upgrade-nss-util-devel
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.