CVE-2004-0826 : Detail

CVE-2004-0826

3%V4
Network
2004-09-02
08h00 +00:00
2024-08-08
00h31 +00:00
Meldingen voor een CVE
Blijf op de hoogte van wijzigingen voor een specifieke CVE.
Meldingen beheren

CVE-beschrijvingen

Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modified record length field in an SSLv2 client hello message.

CVE-informatie

Metriek

Metriek Score Ernst CVSS Vector Source
V2 7.5 AV:N/AC:L/Au:N/C:P/I:P/A:P nvd@nist.gov

EPSS

EPSS is een scoremodel dat de kans voorspelt dat een kwetsbaarheid wordt uitgebuit.

EPSS-score

Het EPSS-model produceert een kans score tussen 0 en 1 (0 en 100%). Hoe hoger de score, hoe groter de kans dat een kwetsbaarheid wordt uitgebuit.

EPSS-percentiel

Het percentiel wordt gebruikt om CVE's te rangschikken op basis van hun EPSS-score. Een CVE in het 95e percentiel heeft bijvoorbeeld een grotere kans om te worden uitgebuit dan 95% van de andere CVE's. Het percentiel wordt dus gebruikt om de EPSS-score van een CVE te vergelijken met die van andere CVE's.

Products Mentioned

Configuraton 0

Mozilla>>Network_security_services >> Version 3.2

Mozilla>>Network_security_services >> Version 3.2.1

Mozilla>>Network_security_services >> Version 3.3

Mozilla>>Network_security_services >> Version 3.3.1

Mozilla>>Network_security_services >> Version 3.3.2

Mozilla>>Network_security_services >> Version 3.4

Mozilla>>Network_security_services >> Version 3.4.1

Mozilla>>Network_security_services >> Version 3.4.2

Mozilla>>Network_security_services >> Version 3.5

Mozilla>>Network_security_services >> Version 3.6

Mozilla>>Network_security_services >> Version 3.6.1

Mozilla>>Network_security_services >> Version 3.7

Mozilla>>Network_security_services >> Version 3.7.1

Mozilla>>Network_security_services >> Version 3.7.2

Mozilla>>Network_security_services >> Version 3.7.3

Mozilla>>Network_security_services >> Version 3.7.5

Mozilla>>Network_security_services >> Version 3.7.7

Mozilla>>Network_security_services >> Version 3.8

Mozilla>>Network_security_services >> Version 3.9

Netscape>>Certificate_server >> Version 1.0

Netscape>>Certificate_server >> Version 4.2

Netscape>>Directory_server >> Version 1.3

Netscape>>Directory_server >> Version 3.1

Netscape>>Directory_server >> Version 3.12

Netscape>>Directory_server >> Version 4.1

Netscape>>Directory_server >> Version 4.11

Netscape>>Directory_server >> Version 4.13

Netscape>>Enterprise_server >> Version 2.0

Netscape>>Enterprise_server >> Version 2.0.1c

Netscape>>Enterprise_server >> Version 2.0a

Netscape>>Enterprise_server >> Version 3.0

Netscape>>Enterprise_server >> Version 3.0.1

Netscape>>Enterprise_server >> Version 3.0.1b

Netscape>>Enterprise_server >> Version 3.0.7a

Netscape>>Enterprise_server >> Version 3.0l

Netscape>>Enterprise_server >> Version 3.1

Netscape>>Enterprise_server >> Version 3.2

Netscape>>Enterprise_server >> Version 3.3

Netscape>>Enterprise_server >> Version 3.4

Netscape>>Enterprise_server >> Version 3.5

Netscape>>Enterprise_server >> Version 3.5

Netscape>>Enterprise_server >> Version 3.5.1

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 3.6

Netscape>>Enterprise_server >> Version 4.0

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1

Netscape>>Enterprise_server >> Version 4.1.1

Netscape>>Enterprise_server >> Version 5.0

Netscape>>Personalization_engine >> Version *

Sun>>Java_enterprise_system >> Version 2003q4

Sun>>Java_enterprise_system >> Version 2004q2

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.0

Sun>>Java_system_application_server >> Version 7.1

Sun>>One_application_server >> Version 6.0

Sun>>One_application_server >> Version 6.0

Sun>>One_application_server >> Version 6.0

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 4.1

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.0

Sun>>One_web_server >> Version 6.1

Sun>>One_web_server >> Version 6.1

Sun>>One_web_server >> Version 6.1

Configuraton 0

Hp>>Hp-ux >> Version 11.00

Hp>>Hp-ux >> Version 11.11

Hp>>Hp-ux >> Version 11.23

Referenties

http://www.securityfocus.com/bid/11015
Tags : vdb-entry, x_refsource_BID
http://xforce.iss.net/xforce/alerts/id/180
Tags : third-party-advisory, x_refsource_ISS
http://marc.info/?l=bugtraq&m=109351293827731&w=2
Tags : vendor-advisory, x_refsource_HP