CVE-2013-5605: Input Validation
Published Nov 16, 2013
·Updated
Mozilla Network Security Services (NSS) 3.14 before 3.14.5 and 3.15 before 3.15.3 allows remote attackers to cause a denial of service or possibly have unspecified other impact via invalid handshake packets.
Affected Software
8 affected components
Mozilla Network Security Services=3.14
Mozilla Network Security Services=3.14.1
Mozilla Network Security Services=3.14.2
Mozilla Network Security Services=3.14.3
Mozilla Network Security Services=3.14.4
Mozilla Network Security Services=3.15
Mozilla Network Security Services=3.15.1
Mozilla Network Security Services=3.15.2
Remediation
Event History
Nov 16, 2013
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-5605?
CVE-2013-5605 has a severity rating that indicates it can lead to denial of service.
2
How do I fix CVE-2013-5605?
To fix CVE-2013-5605, update Mozilla Network Security Services to version 3.14.5 or 3.15.3 or later.
3
Which versions of NSS are affected by CVE-2013-5605?
CVE-2013-5605 affects Mozilla NSS versions 3.14 through 3.14.4 and 3.15 through 3.15.2.
4
What types of attacks are possible with CVE-2013-5605?
CVE-2013-5605 allows remote attackers to cause a denial of service via invalid handshake packets.
5
Is there any additional impact beyond denial of service for CVE-2013-5605?
CVE-2013-5605 has unspecified other impacts in addition to the denial of service vulnerability.