04 Nov 2015
Vulnerability Details :
The sec_asn1d_parse_leaf function in Mozilla Network Security Services (NSS) before 220.127.116.11 and 3.20.x before 3.20.1, as used in Firefox before 42.0 and Firefox ESR 38.x before 38.4 and other products, improperly restricts access to an unspecified data structure, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted OCTET STRING data, related to a "use-after-poison" issue.
Publish Date : 2015-11-05 Last Update Date : 2015-11-05
- CVSS Scores & Vulnerability Types
- Related OVAL Definitions
OVAL (Open Vulnerability and Assessment Language) definitions define exactly what should be done to verify a vulnerability or a missing patch. Check out the OVAL definitions if you want to learn what you should do to verify a vulnerability.
- Products Affected By CVE-2015-7181
- References For CVE-2015-7181
- Metasploit Modules Related To CVE-2015-7181
There are not any metasploit modules related to this vulnerability (Please visit www.metasploit.com for more information)