Unrated severityNVD Advisory· Published Nov 26, 2024· Updated Nov 26, 2024
CVE-2024-11706
CVE-2024-11706
Description
A null pointer dereference may have inadvertently occurred in pk12util, and specifically in the SEC_ASN1DecodeItem_Util function, when handling malformed or improperly formatted input files. This vulnerability affects Firefox < 133 and Thunderbird < 133.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7<133+ 1 more
- (no CPE)range: <133
- (no CPE)range: unspecified
<133+ 1 more
- (no CPE)range: <133
- (no CPE)range: unspecified
- osv-coords3 versionspkg:apk/chainguard/firefoxpkg:apk/wolfi/firefoxpkg:rpm/opensuse/MozillaFirefox&distro=openSUSE%20Tumbleweed
< 133.0-r0+ 2 more
- (no CPE)range: < 133.0-r0
- (no CPE)range: < 133.0-r0
- (no CPE)range: < 133.0.3-1.1
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.