Description
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.
Published: 2019-11-15
Score: 7.5 High
EPSS: 1.6% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2016-6236 A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.
Ubuntu USN Ubuntu USN USN-3163-1 NSS vulnerabilities
History

No history.

Subscriptions

Avaya Aura Application Enablement Services Aura Application Server 5300 Aura Communication Manager Aura Communication Manager Messagint Aura Conferencing Aura Experience Portal Aura Messaging Aura Session Manager Aura System Manager Aura System Platform Aura System Platform Firmware Aura Utility Services Breeze Platform Call Management System Cs1000e Cs1000e\/cs1000m Signaling Server Cs1000e\/cs1000m Signaling Server Firmware Cs1000e Firmware Cs1000m Cs1000m Firmware Ip Office Iq Meeting Exchange Message Networking One-x Client Enablement Services Proactive Contact Session Border Controller For Enterprise Session Border Controller For Enterprise Firmware
Debian Debian Linux
Mozilla Nss
Redhat Enterprise Linux
Suse Linux Enterprise Server
cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2024-08-06T00:53:48.923Z

Reserved: 2016-06-03T00:00:00.000Z

Link: CVE-2016-5285

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-11-15T16:15:10.110

Modified: 2024-11-21T02:53:59.990

Link: CVE-2016-5285

cve-icon Redhat

Severity : Moderate

Publid Date: 2016-11-16T00:00:00Z

Links: CVE-2016-5285 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses