CVE Published: 15/11/2019 |
CVE Updated: 06/08/2024 |
CVE Year: 2016 Source: mozilla |
Vendor: Mozilla |
Product: Network Security Services Status : PUBLISHED
CVE-2016-5285 Description
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.