Beveiligingsadvies

CVE-2024-11706

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-11-26 13:34:01
Laatst bijgewerkt 2024-11-26 16:32:23
Toegewezen door mozilla
CVSS-score 6.5
Status PUBLISHED

Beschrijving

A null pointer dereference may have inadvertently occurred in `pk12util`, and specifically in the `SEC_ASN1DecodeItem_Util` function, when handling malformed or improperly formatted input files. This vulnerability affects Firefox < 133 and Thunderbird < 133.