Null Pointer Dereference Vulnerability in Mozilla Network Security Services
CVE-2016-5285
7.5HIGH
Summary
A vulnerability arises in the Mozilla Network Security Services where the absence of a NULL pointer check in specific functions can be exploited by a remote attacker. This flaw may lead to a Denial of Service condition, impacting the availability of services that rely on these security libraries.
Affected Version(s)
Network Security Services 3.24
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved