oval:org.mitre.oval:def:11007
Definition Id: oval:org.mitre.oval:def:11007 | |||
Oval ID: | oval:org.mitre.oval:def:11007 | ||
Title: | Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5, when using an RSA key with exponent 3, does not properly handle extra data in a signature, which allows remote attackers to forge signatures for SSL/TLS and email certificates, a similar vulnerability to CVE-2006-4339. NOTE: on 20061107, Mozilla released an advisory stating that these versions were not completely patched by MFSA2006-60. The newer fixes for 1.5.0.7 are covered by CVE-2006-5462. | ||
Description: | Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5, when using an RSA key with exponent 3, does not properly handle extra data in a signature, which allows remote attackers to forge signatures for SSL/TLS and email certificates, a similar vulnerability to CVE-2006-4339. NOTE: on 20061107, Mozilla released an advisory stating that these versions were not completely patched by MFSA2006-60. The newer fixes for 1.5.0.7 are covered by CVE-2006-5462. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2006-4340 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 3 CentOS Linux 3 Red Hat Enterprise Linux 4 CentOS Linux 4 Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16636 | |||
Oval ID: | oval:org.mitre.oval:def:16636 | ||
Title: | CentOS Linux 4.x | ||
Description: | The operating system installed on the system is CentOS Linux 4.x | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:centos:centos:4 | Version: | 3 |
Platform(s): | CentOS Linux 4 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:11007 |
Definition Id: oval:org.mitre.oval:def:11831 | |||
Oval ID: | oval:org.mitre.oval:def:11831 | ||
Title: | The operating system installed on the system is Red Hat Enterprise Linux 4 | ||
Description: | The operating system installed on the system is Red Hat Enterprise Linux 4. | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:redhat:enterprise_linux:4 | Version: | 7 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:11007 |
Definition Id: oval:org.mitre.oval:def:16651 | |||
Oval ID: | oval:org.mitre.oval:def:16651 | ||
Title: | CentOS Linux 3.x | ||
Description: | The operating system installed on the system is CentOS Linux 3.x | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:centos:centos:3 | Version: | 3 |
Platform(s): | CentOS Linux 3 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:11007 |
Definition Id: oval:org.mitre.oval:def:15990 | |||
Oval ID: | oval:org.mitre.oval:def:15990 | ||
Title: | Oracle Linux 4.x | ||
Description: | The operating system installed on the system is Oracle Linux 4.x | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:oracle:linux:4 | Version: | 5 |
Platform(s): | Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:11007 |
Definition Id: oval:org.mitre.oval:def:11782 | |||
Oval ID: | oval:org.mitre.oval:def:11782 | ||
Title: | The operating system installed on the system is Red Hat Enterprise Linux 3 | ||
Description: | The operating system installed on the system is Red Hat Enterprise Linux 3. | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:redhat:enterprise_linux:3 | Version: | 7 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:11007 |