Language:
https://bugzilla.suse.com/show_bug.cgi?id=1078436
https://bugzilla.suse.com/show_bug.cgi?id=1091551
https://bugzilla.suse.com/show_bug.cgi?id=1092697
https://bugzilla.suse.com/show_bug.cgi?id=1094767
https://bugzilla.suse.com/show_bug.cgi?id=1012260
https://bugzilla.suse.com/show_bug.cgi?id=1021577
https://bugzilla.suse.com/show_bug.cgi?id=1026191
https://bugzilla.suse.com/show_bug.cgi?id=1041469
https://bugzilla.suse.com/show_bug.cgi?id=1041894
https://bugzilla.suse.com/show_bug.cgi?id=1049703
https://bugzilla.suse.com/show_bug.cgi?id=1061204
https://bugzilla.suse.com/show_bug.cgi?id=1064786
https://bugzilla.suse.com/show_bug.cgi?id=1065464
https://bugzilla.suse.com/show_bug.cgi?id=1066489
https://bugzilla.suse.com/show_bug.cgi?id=1073210
https://bugzilla.suse.com/show_bug.cgi?id=1096515
https://bugzilla.suse.com/show_bug.cgi?id=1107343
https://bugzilla.suse.com/show_bug.cgi?id=1108771
https://bugzilla.suse.com/show_bug.cgi?id=1108986
https://bugzilla.suse.com/show_bug.cgi?id=1109363
https://bugzilla.suse.com/show_bug.cgi?id=1109465
https://bugzilla.suse.com/show_bug.cgi?id=1110506
https://bugzilla.suse.com/show_bug.cgi?id=1110507
https://bugzilla.suse.com/show_bug.cgi?id=703591
https://bugzilla.suse.com/show_bug.cgi?id=839074
https://bugzilla.suse.com/show_bug.cgi?id=857131
https://bugzilla.suse.com/show_bug.cgi?id=893359
https://www.suse.com/security/cve/CVE-2017-16541/
https://www.suse.com/security/cve/CVE-2018-12376/
https://www.suse.com/security/cve/CVE-2018-12377/
https://www.suse.com/security/cve/CVE-2018-12378/
https://www.suse.com/security/cve/CVE-2018-12379/
https://www.suse.com/security/cve/CVE-2018-12381/
https://www.suse.com/security/cve/CVE-2018-12383/
https://www.suse.com/security/cve/CVE-2018-12385/
https://www.suse.com/security/cve/CVE-2018-12386/
Severity: Critical
ID: 119451
File Name: suse_SU-2018-3591-2.nasl
Version: 1.6
Type: local
Agent: unix
Family: SuSE Local Security Checks
Published: 12/6/2018
Updated: 7/17/2024
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Nessus
Risk Factor: Medium
Score: 6.7
Risk Factor: High
Base Score: 7.5
Temporal Score: 5.9
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS Score Source: CVE-2018-12378
Risk Factor: Critical
Base Score: 9.8
Temporal Score: 8.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
CPE: p-cpe:/a:novell:suse_linux:mozilla-nspr, p-cpe:/a:novell:suse_linux:mozillafirefox-debugsource, p-cpe:/a:novell:suse_linux:libfreebl3, p-cpe:/a:novell:suse_linux:mozilla-nss-debugsource, p-cpe:/a:novell:suse_linux:apache2-mod_nss-debugsource, p-cpe:/a:novell:suse_linux:libsoftokn3-hmac, cpe:/o:novell:suse_linux:12, p-cpe:/a:novell:suse_linux:mozilla-nss-sysinit-debuginfo, p-cpe:/a:novell:suse_linux:libsoftokn3-debuginfo, p-cpe:/a:novell:suse_linux:mozillafirefox-branding-sle, p-cpe:/a:novell:suse_linux:mozilla-nss-tools-debuginfo, p-cpe:/a:novell:suse_linux:apache2-mod_nss, p-cpe:/a:novell:suse_linux:mozillafirefox, p-cpe:/a:novell:suse_linux:mozilla-nspr-debugsource, p-cpe:/a:novell:suse_linux:mozilla-nspr-debuginfo, p-cpe:/a:novell:suse_linux:mozilla-nss-debuginfo, p-cpe:/a:novell:suse_linux:mozilla-nss-certs, p-cpe:/a:novell:suse_linux:mozilla-nss-certs-debuginfo, p-cpe:/a:novell:suse_linux:mozilla-nss, p-cpe:/a:novell:suse_linux:mozillafirefox-translations-common, p-cpe:/a:novell:suse_linux:mozilla-nss-sysinit, p-cpe:/a:novell:suse_linux:mozilla-nss-tools, p-cpe:/a:novell:suse_linux:apache2-mod_nss-debuginfo, p-cpe:/a:novell:suse_linux:mozillafirefox-debuginfo, p-cpe:/a:novell:suse_linux:libfreebl3-debuginfo, p-cpe:/a:novell:suse_linux:libfreebl3-hmac, p-cpe:/a:novell:suse_linux:libsoftokn3
Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 12/5/2018
Vulnerability Publication Date: 11/4/2017
CVE: CVE-2017-16541, CVE-2018-12376, CVE-2018-12377, CVE-2018-12378, CVE-2018-12379, CVE-2018-12381, CVE-2018-12383, CVE-2018-12385, CVE-2018-12386, CVE-2018-12387