CVE-2024-11706

Publication date

2024-11-26 13:34:01

Family

mozilla

State

PUBLISHED

Description

A null pointer dereference may have inadvertently occurred in `pk12util`, and specifically in the `SEC_ASN1DecodeItem_Util` function, when handling malformed or improperly formatted input files. This vulnerability affects Firefox < 133 and Thunderbird < 133.