Description

A null pointer dereference may have inadvertently occurred in `pk12util`, and specifically in the `SEC_ASN1DecodeItem_Util` function, when handling malformed or improperly formatted input files. This vulnerability affects Firefox < 133 and Thunderbird < 133.

INFO

Published Date :

2024-11-26T13:34:01.638Z

Last Modified :

2024-11-26T16:32:23.217Z

Source :

mozilla
AFFECTED PRODUCTS

The following products are affected by CVE-2024-11706 vulnerability.

Vendors Products
Mozilla
  • Firefox
  • Thunderbird

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact