This commit is contained in:
Al Billings 2015-11-03 11:07:05 -08:00
Родитель 1bf99a1fdf
Коммит bb099ded27
1 изменённых файлов: 1 добавлений и 1 удалений

Просмотреть файл

@ -13,7 +13,7 @@ title: NSS and NSPR memory corruption issues
<p>Mozilla engineers <strong>Tyson Smith</strong> and <strong>David Keeler</strong>
reported a use-after-poison and buffer overflow in the ASN.1 decoder in Network Security
Services (NSS). These issues were in octet string parsing and were found through fuzzing
and code inspection. If these issues were exploited, they would lead to a potentially
and code inspection. If these issues were triggered, they would lead to a potentially
exploitable crash. These issues were fixed in NSS version 3.19.2.1 and 3.19.4, shipped in
Firefox and Firefox ESR, respectively, as well as NSS 3.20.1.</p>