Sploitus

CVE-2012-0441

No indexed exploits for CVE-2012-0441 yet

The ASN.1 decoder in the QuickDER decoder in Mozilla Network Security Services (NSS) before 3.13.4, as used in Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10, allows remote attackers to cause a denial of service (application crash) via a zero-length item, as demonstrated by (1) a zero-length basic constraint or (2) a zero-length field in an OCSP response.

Mozilla Firefox
= 4.0, 4.0.1, 5.0, 5.0.1, 6.0, 6.0.1, 6.0.2, 7.0, 7.0.1, 8.0, 8.0.1, 9.0, 9.0.1, 10.0, 10.0.1, 10.0.2, 10.0.3, 10.0.4, 11.0, 12.0
Mozilla Network Security Services
≤ 3.12.3, 3.2, 3.2.1, 3.3, 3.3.1, 3.3.2, 3.4, 3.4.1, 3.4.2, 3.5, 3.6, 3.6.1, 3.7, 3.7.1, 3.7.2, 3.7.3, 3.7.5, 3.7.7, 3.8, 3.9
Fix
Available
CVSS 2.0
5.0 MEDIUM
EPSS
2.9% (86th percentile)
Weakness
CWE-119
NVD status
Modified
Published
2012-06-05
CVE-2012-0441 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2012-0441 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2012-0441 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.