Debian 9925 Published by

A nss security update has been released for Debian GNU/Linux 7 Extended LTS



ELA-194-1 nss security update

Package nss
Version 2:3.26-1+debu7u9
Related CVE CVE-2019-11745
A vulnerability has been discovered in nss, the Mozilla Network Security Service library. An out-of-bounds write can occur when passing an output buffer smaller than the block size to NSC_EncryptUpdate.

For Debian 7 Wheezy, these problems have been fixed in version 2:3.26-1+debu7u9.

We recommend that you upgrade your nss packages.

Further information about Extended LTS security advisories can be found at: https://deb.freexian.com/extended-lts/