CVE Vulnerabilities

CVE-2022-34476

Published: Dec 22, 2022 | Modified: Apr 15, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

ASN.1 parsing of an indefinite SEQUENCE inside an indefinite GROUP could have resulted in the parser accepting malformed ASN.1. This vulnerability affects Firefox < 102.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla*102.0 (excluding)
FirefoxUbuntubionic*
FirefoxUbuntufocal*
FirefoxUbuntuimpish*
FirefoxUbuntuupstream*

References