Vulnerability Bulletins |
DSA-3037 icedove - security update |
|
| Affected software | Debian |
|
Antoine Delignat-Lavaud from Inria discovered an issue in the way NSS (theMozilla Network Security Service library, embedded in Wheezys Icedove),was parsing ASN.1 data used in signatures, making it vulnerable to asignature forgery attack. More info: https://www.debian.org/security/2014/dsa-3037 |
|






