Denial of Service Vulnerability in Network Security Services by Mozilla
CVE-2018-18508
6.5MEDIUM
What is CVE-2018-18508?
The vulnerability in Mozilla's Network Security Services (NSS) arises from handling malformed signatures, leading to a null dereference that triggers a crash. This results in a Denial of Service, causing potential disruptions in service availability. The flaw has been identified in versions prior to 3.36.7 and 3.41.1, which need to be updated to mitigate risks associated with this vulnerability.
Affected Version(s)
NSS < 3.41.1
NSS < 3.36.7