Null Pointer Dereference Vulnerability in Mozilla Network Security Services

Null Pointer Dereference Vulnerability in Mozilla Network Security Services

CVE-2016-5285 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.

Learn more about our Network Penetration Testing.