[amres-info] Ranjivost NSS, NSS-util, NSPR biblioteka

Miloš Kukoleča milos.kukoleca at amres.ac.rs
Thu Nov 5 11:46:23 CET 2015


Poštovane koleginice i kolege,

 

Pojavila se nova ranjivost u Network Security Services (NSS) bibliotekama.
Ove biblioteke se često koriste u raznim Linux distribucijama za kreiranje i
rad sigurnosnih funkcija u aplikacijama. Problem može nastati jer ove
biblioteke nepravilno parsiraju ASN.1 strukture podataka što u konačnici
može dovesti do prekida u radu aplikacije ili do izvršavanja proizvoljnog
koda. 

 

Molimo vas da proverite vaše Linux servere i ažurirate NSS bibliotečki paket
budući da je većina Linux distribucija izdala najnoviju zakrpu. U nastavku
vas upućujemo na odgovarajuće linkove za posebne distribucije.

 

RedHat-based operativni sistem:

https://rhn.redhat.com/errata/RHSA-2015-1981.html

 

Ubuntu operativni sistem:

http://www.ubuntu.com/usn/usn-2791-1/

http://www.ubuntu.com/usn/usn-2790-1/

 

 

Srdačan pozdrav,

 

Miloš Kukoleča, M.Sc.E.E. CCNP

Network Security Engineer

 

Description: bplogo

 

Akademska mreža Republike Srbije

Bulevar Kralja Aleksandra 90, 11000 Beograd, Srbija

 

Tel:                   +381 11 7158 950

Mob:                +381 66 8433 096

Fax:                  +381 11 3370 288

Email               milos.kukoleca at amres.ac.rs

Internet:           <http://www.amres.ac.rs/> http://www.amres.ac.rs

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://afrodita.rcub.bg.ac.rs/pipermail/amres-info/attachments/20151105/cd538092/attachment-0001.html 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: image/gif
Size: 3571 bytes
Desc: not available
Url : http://afrodita.rcub.bg.ac.rs/pipermail/amres-info/attachments/20151105/cd538092/attachment-0001.gif 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6343 bytes
Desc: not available
Url : http://afrodita.rcub.bg.ac.rs/pipermail/amres-info/attachments/20151105/cd538092/attachment-0001.bin 


More information about the amres-info mailing list