### [CVE-2016-5285](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5285) ![](https://img.shields.io/static/v1?label=Product&message=Network%20Security%20Services&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=denial%20of%20service&color=brighgreen) ### Description A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service. ### POC #### Reference No PoCs from references. #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/getupcloud/openshift-clair-controller