A heap-based buffer overflow was found in the NSC_EncryptUpdate() function. A remote attacker could trigger this flaw via SRTP encrypt or decrypt operations, to execute arbitrary code with the permissions of the user running the application (compiled with nss)
Acknowledgments: Name: the Mozilla Project
Upstream bug: (currently non-public) https://bugzilla.mozilla.org/show_bug.cgi?id=1586176 Upstream patch: https://hg.mozilla.org/releases/mozilla-esr68/rev/ea1bc0fb2dda
External References: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.44.3_release_notes https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.47.1_release_notes
This issue is fixed in Fedora by rebasing to 3.47.1 via the following updates: http://koji.fedoraproject.org/packages/nss/3.47.1/1.fc30 http://koji.fedoraproject.org/packages/nss/3.47.1/1.fc31
Statement: Firefox and Thunderbird on Red Hat Enterprise Linux are built against the system nss library.
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2019:4114 https://access.redhat.com/errata/RHSA-2019:4114
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2019-11745
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2019:4152 https://access.redhat.com/errata/RHSA-2019:4152
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2019:4190 https://access.redhat.com/errata/RHSA-2019:4190
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions Via RHSA-2020:0243 https://access.redhat.com/errata/RHSA-2020:0243
This issue has been addressed in the following products: Red Hat Enterprise Linux 6.6 Advanced Update Support Via RHSA-2020:0466 https://access.redhat.com/errata/RHSA-2020:0466
This issue has been addressed in the following products: Red Hat Enterprise Linux 7.5 Extended Update Support Via RHSA-2020:1267 https://access.redhat.com/errata/RHSA-2020:1267
This issue has been addressed in the following products: Red Hat Enterprise Linux 7.4 Advanced Update Support Red Hat Enterprise Linux 7.4 Update Services for SAP Solutions Red Hat Enterprise Linux 7.4 Telco Extended Update Support Via RHSA-2020:1345 https://access.redhat.com/errata/RHSA-2020:1345
This issue has been addressed in the following products: Red Hat Enterprise Linux 7.6 Extended Update Support Via RHSA-2020:1461 https://access.redhat.com/errata/RHSA-2020:1461