Summary
This host is installed with Mozilla Firefox
and is prone to spoofing vulnerability.
Impact
Successful exploitation will allow attackers
to conduct spoofing attacks.
Impact Level: Application
Solution
Upgrade to Mozilla Firefox version 32.0.3
or later, For updates refer to http://www.mozilla.com/en-US/firefox/all.html
Insight
Flaw exists due to improper handling of
ASN.1 values while parsing RSA signature
Affected
Mozilla Firefox before 32.0.3 on Windows
Detection
Get the installed version with the help of
detect NVT and check the version is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2014-1568 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Adobe Acrobat Multiple Unspecified Vulnerabilities-01 Sep13 (Windows)
- Adobe Dreamweaver Insecure Library Loading Vulnerability
- Adobe Flash Player 'SWF' File Multiple Code Execution Vulnerability - Mac OS X
- Adobe Air and Flash Player Multiple Vulnerabilities (Mac OS X)
- Adobe Flash Media Server multiple vulnerabilities