You are here: Known Vulnerabilities in Mozilla Products (Firefox 184.108.40.206) > MFSA 2006-38
Mozilla Foundation Security Advisory 2006-38
Title: Buffer overflow in crypto.signText()
Date: June 1, 2006
Reporter: Mikolaj J. Habryn
Products: Firefox, Thunderbird, SeaMonkey
Fixed in: Firefox 220.127.116.11
Mikolaj Habryn discovered an array index bug in crypto.signText() that results in overflowing an allocated array of pointers by two when optional Certificate Authority name arguments are passed in.