CVE-2004-0826 : Details

CVE-2004-0826

3%V4
Network
2004-09-02
08h00 +00:00
2024-08-08
00h31 +00:00
Benachrichtigungen für ein CVE
Bleiben Sie über alle Änderungen zu einem bestimmten CVE informiert.
Benachrichtigungen verwalten

CVE-Beschreibungen

Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modified record length field in an SSLv2 client hello message.

CVE-Informationen

Metriken

Metriken Score Schweregrad CVSS Vektor Source
V2 7.5 AV:N/AC:L/Au:N/C:P/I:P/A:P nvd@nist.gov

EPSS

EPSS ist ein Bewertungsmodell, das die Wahrscheinlichkeit vorhersagt, dass eine Schwachstelle ausgenutzt wird.

EPSS-Score

Das EPSS-Modell liefert einen Wahrscheinlichkeitswert zwischen 0 und 1 (0 und 100%). Je höher der Score, desto größer die Wahrscheinlichkeit, dass eine Schwachstelle ausgenutzt wird.

EPSS-Perzentil

Das Perzentil wird verwendet, um CVEs nach ihrem EPSS-Score zu ranken. Ein CVE im 95. Perzentil gemäß seinem EPSS-Score ist beispielsweise mit größerer Wahrscheinlichkeit ausnutzbar als 95% der anderen CVEs. Das Perzentil dient somit zum Vergleich des EPSS-Scores eines CVEs mit dem anderer CVEs.

Products Mentioned

Configuraton 0

Mozilla>>Network_security_services >> Version 3.2

Mozilla>>Network_security_services >> Version 3.2.1

Mozilla>>Network_security_services >> Version 3.3

Mozilla>>Network_security_services >> Version 3.3.1

Mozilla>>Network_security_services >> Version 3.3.2

Mozilla>>Network_security_services >> Version 3.4

Mozilla>>Network_security_services >> Version 3.4.1

Mozilla>>Network_security_services >> Version 3.4.2

Mozilla>>Network_security_services >> Version 3.5

Mozilla>>Network_security_services >> Version 3.6

Mozilla>>Network_security_services >> Version 3.6.1

Mozilla>>Network_security_services >> Version 3.7

Mozilla>>Network_security_services >> Version 3.7.1

Mozilla>>Network_security_services >> Version 3.7.2

Mozilla>>Network_security_services >> Version 3.7.3

Mozilla>>Network_security_services >> Version 3.7.5

Mozilla>>Network_security_services >> Version 3.7.7

Mozilla>>Network_security_services >> Version 3.8

Mozilla>>Network_security_services >> Version 3.9

Netscape>>Certificate_server >> Version 1.0

Netscape>>Certificate_server >> Version 4.2

Netscape>>Directory_server >> Version 1.3

Netscape>>Directory_server >> Version 3.1

Netscape>>Directory_server >> Version 3.12

Netscape>>Directory_server >> Version 4.1

Netscape>>Directory_server >> Version 4.11

Netscape>>Directory_server >> Version 4.13

Netscape>>Enterprise_server >> Version 2.0

Netscape>>Enterprise_server >> Version 2.0.1c

Netscape>>Enterprise_server >> Version 2.0a

Netscape>>Enterprise_server >> Version 3.0

Netscape>>Enterprise_server >> Version 3.0.1

Netscape>>Enterprise_server >> Version 3.0.1b

Netscape>>Enterprise_server >> Version 3.0.7a

Netscape>>Enterprise_server >> Version 3.0l

Netscape>>Enterprise_server >> Version 3.1

Netscape>>Enterprise_server >> Version 3.2

Netscape>>Enterprise_server >> Version 3.3

Netscape>>Enterprise_server >> Version 3.4

Netscape>>Enterprise_server >> Version 3.5

Netscape>>Enterprise_server >> Version 3.5

Netscape>>Enterprise_server >> Version 3.5.1

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 4.0

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1.1

Netscape>>Enterprise_server >> Version 5.0

Netscape>>Personalization_engine >> Version *

Sun>>Java_enterprise_system >> Version 2003q4

Sun>>Java_enterprise_system >> Version 2004q2

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.1

Sun>>One_application_server >> Version 6.0

Sun>>One_application_server >> Version 6.0

Sun>>One_application_server >> Version 6.0

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.1

Sun>>One_web_server >> Version 6.1

Sun>>One_web_server >> Version 6.1

Configuraton 0

Hp>>Hp-ux >> Version 11.00

Hp>>Hp-ux >> Version 11.11

Hp>>Hp-ux >> Version 11.23

Referenzen

http://www.securityfocus.com/bid/11015
Tags : vdb-entry, x_refsource_BID
http://xforce.iss.net/xforce/alerts/id/180
Tags : third-party-advisory, x_refsource_ISS
http://marc.info/?l=bugtraq&m=109351293827731&w=2
Tags : vendor-advisory, x_refsource_HP