Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://xforce.iss.net/xforce/alerts/id/180
http://www.osvdb.org/9116
http://secunia.com/advisories/12362
http://www.vuxml.org/freebsd/207f8ff3-f697-11d8-81b0-000347a4fa7d.html
Insight
The following package is affected: nss
CVE-2004-0826:
A heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modified record length field in an SSLv2 client hello message.
Severity
Classification
-
CVE CVE-2004-0826 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities