Vulnerability & Exploit Database

Back to search

Huawei EulerOS: CVE-2017-7805: Important: nss security update

Severity CVSS Published Added Modified
4 (AV:L/AC:M/Au:N/C:P/I:P/A:P) September 27, 2017 November 29, 2017 November 29, 2017

Description

A use-after-free flaw was found in the TLS 1.2 implementation in the NSS library when client authentication was used. A malicious client could use this flaw to cause an application compiled against NSS to crash or, potentially, execute arbitrary code with the permission of the user running the application.

Free Nexpose Download

Discover, prioritize, and remediate security risks today!

 Download now

References

Solution

huawei-euleros-2_0_sp1-upgrade-nss

Related Vulnerabilities