CVE-2017-11697 PUBLISHED

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.

EPSS 0.11% · 28.7th percentile

Risk Scores

EPSS Score
0.11%
28.7th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSnss0, 2:3.15.1-1ubuntu1, 2:3.15.2-1
Ubuntu:18.04:LTSnss2:3.35-2ubuntu2.16, 0, 2:3.32-1ubuntu3
Ubuntu:Pro:16.04:LTSnss2:3.28.4-0ubuntu0.16.04.12, 2:3.28.4-0ubuntu0.16.04.13, 2:3.28.4-0ubuntu0.16.04.14

Timeline

References

Open in Interactive Console →