CVE-2019-11745
CVSS v3.1
8.8 (High)
CVSS v2.0
6.8 (Medium)
EPSS
0.29 % (69th)
Affected Products
23
Advisories
35
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur. This could have caused heap corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
Weaknesses
- CWE-787
- Out-of-bounds Write
- CVE Status
- PUBLISHED
- CNA
- Mozilla Corporation
- Published Date
-
2020-01-08 20:15:12
(4 years ago) - Updated Date
-
2021-02-19 17:22:17
(3 years ago)
Affected Products
- Ruggedcom Rox Mx5000
- Ruggedcom Rox Rx1400
- Ruggedcom Rox Rx1500
- Ruggedcom Rox Rx1501
- Ruggedcom Rox Rx1510
- Ruggedcom Rox Rx1511
- Ruggedcom Rox Rx1512
- Ruggedcom Rox Rx5000
- Ruggedcom Rox Mx5000 Firmware
- Ruggedcom Rox Rx1400 Firmware
- Ruggedcom Rox Rx1500 Firmware
- Ruggedcom Rox Rx1501 Firmware
- Ruggedcom Rox Rx1510 Firmware
- Ruggedcom Rox Rx1511 Firmware
- Ruggedcom Rox Rx1512 Firmware
- Ruggedcom Rox Rx5000 Firmware
Loading...
Loading...
Configuration #1
AND |
|
---|
Configuration #2
AND |
|
---|
Configuration #3
AND |
|
---|
Configuration #4
AND |
|
---|
Configuration #5
AND |
|
---|
Configuration #6
AND |
|
---|
Configuration #7
AND |
|
---|
Configuration #8
AND |
|
---|
Configuration #9
AND |
|
---|
Configuration #10
AND |
|
---|
Configuration #11
AND |
|
---|
Configuration #12
AND |
|
---|
Configuration #13
AND |
|
---|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...