[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2014:066 -- Mandriva nss

ID: oval:org.secpod.oval:def:1300291Date: (C)2014-04-14   (M)2024-02-19
Class: PATCHFamily: unix




A vulnerability has been found and corrected in mozilla NSS: In a wildcard certificate, the wildcard character should not be embedded within the U-label of an internationalized domain name. See the last bullet point in RFC 6125, Section 7.2 . The updated packages have been upgraded to the latest NSPR and NSS versions which is not vulnerable to this issue. Additionally the rootcerts package has also been updated to version 1.97, which adds, removes, and distrusts several certificates.

Platform:
Mandriva Enterprise Server 5.2
Product:
nss
Reference:
MDVSA-2014:066
CVE-2014-1492
CVE    1
CVE-2014-1492
CPE    2
cpe:/a:nss:network_security_services
cpe:/o:mandriva:enterprise_server:5.2

© SecPod Technologies