CVE-2016-1950
Published Mar 13, 2016
Last updated 24 days ago
Overview
- Description
- Heap-based buffer overflow in Mozilla Network Security Services (NSS) before 3.19.2.3 and 3.20.x and 3.21.x before 3.21.1, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrary code via crafted ASN.1 data in an X.509 certificate.
- Source
- security@mozilla.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mozilla:network_security_services:3.19.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "052B697D-EF07-43AD-A2FF-4A2CCE3540A2" }, { "criteria": "cpe:2.3:a:mozilla:network_security_services:3.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5648F313-022B-45A7-8C65-C757A28D3886" }, { "criteria": "cpe:2.3:a:mozilla:network_security_services:3.20.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7ED6B6EF-D19A-474B-893E-6A0C5BCF0356" }, { "criteria": "cpe:2.3:a:mozilla:network_security_services:3.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4C9E67E8-CD01-4E19-9003-7E31A0942DB4" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A2CA2CAD-3088-47C2-AE3A-607E6064E9BE", "versionEndIncluding": "44.0.2" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "35BF0AFB-26BA-4BEA-B6B8-11CF88E951DE" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F007CC6-9391-4E1C-A747-F3DE5E572FA5" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "45E9641F-430C-4B3A-BD63-EC13DBD3D1E4" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5AADD23B-A8AF-4679-990D-C29A1D6EB5CD" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1343A1FD-98CF-4A6C-A697-1253E538FD5C" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D098567-B55E-4EAC-8FAA-31FAFDD4058F" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE0389BC-D295-4957-8AE7-EDAC770F596D" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E75E69A5-AC94-4F35-9EFB-1BFF8B78210D" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2765E663-C9CF-476A-B7A8-6F02D0E2D72D" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "62B4E871-0ACB-4EC5-8392-EAD0DF25E64B" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "435D6EF5-C879-4121-9D47-EF2236E53409" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A5963D11-D2F4-40A7-81CE-E034C91FCCBD" }, { "criteria": "cpe:2.3:a:mozilla:firefox:38.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FB022A7-B792-4AC0-B2CF-AF6F384AE719" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E3CCD459-9E6D-4731-8054-CDF8B58454A9" }, { "criteria": "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CC7A498A-A669-4C42-8134-86103C799D13" }, { "criteria": "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "104DA87B-DEE4-4262-AE50-8E6BC43B228B" }, { "criteria": "cpe:2.3:o:oracle:vm_server:3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FEC7F7E-AA94-4405-93D6-D0194A37D3C9" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "080450EA-85C1-454D-98F9-5286D69CF237", "versionEndIncluding": "9.2.1" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D3C6DA6A-9C87-4B7B-A52D-A66276B5DE82", "versionEndIncluding": "10.11.3" }, { "criteria": "cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B7CF16CB-120B-4FC0-B7A2-2FCD3324EA8A", "versionEndIncluding": "9.1" }, { "criteria": "cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FBF14807-BA21-480B-9ED0-A6D53352E87F", "versionEndIncluding": "2.1" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:oracle:glassfish_server:2.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0E80F5AC-A2EF-4D8A-AE8F-5DD0FF9B48C2" }, { "criteria": "cpe:2.3:a:oracle:iplanet_web_proxy_server:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AE9E3545-A799-427A-8FE4-1E8231A7A284" }, { "criteria": "cpe:2.3:a:oracle:iplanet_web_server:7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A972CA67-3909-4E9A-B8FC-7AAE5126528A" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E3CCD459-9E6D-4731-8054-CDF8B58454A9" }, { "criteria": "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CC7A498A-A669-4C42-8134-86103C799D13" }, { "criteria": "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "104DA87B-DEE4-4262-AE50-8E6BC43B228B" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A10BC294-9196-425F-9FB0-B1625465B47F" } ], "operator": "OR" } ] } ]