Multiple integer overflows in io/prprf.c in Mozilla Netscape Portable Runtime (NSPR) before 4.12 allow remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a long string to a PR_*printf function.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-513-1 nspr security update
Debian DSA Debian DSA DSA-3687-1 nspr security update
EUVD EUVD EUVD-2016-3040 Multiple integer overflows in io/prprf.c in Mozilla Netscape Portable Runtime (NSPR) before 4.12 allow remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a long string to a PR_*printf function.
Ubuntu USN Ubuntu USN USN-3023-1 Thunderbird vulnerabilities
Ubuntu USN Ubuntu USN USN-3028-1 NSPR vulnerability
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2024-08-05T23:10:40.392Z

Reserved: 2016-01-20T00:00:00

Link: CVE-2016-1951

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-08-07T19:59:00.127

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-1951

cve-icon Redhat

Severity : Moderate

Publid Date: 2016-05-31T00:00:00Z

Links: CVE-2016-1951 - Bugzilla

cve-icon OpenCVE Enrichment

No data.