EncryptingOutputStream was susceptible to exposing uninitialized data. This issue could only be abused in order to write data to a local disk which may have implications for private browsing mode. This vulnerability affects Firefox ESR < 115.6 and Firefox < 121.
| Software | From | Fixed in |
|---|---|---|
| mozilla / firefox | - | 121.0 |
| mozilla / firefox_esr | - | 115.6 |
| debian / debian_linux | 11.0 | 11.0.x |
| debian / debian_linux | 12.0 | 12.0.x |
| debian / debian_linux | 10.0 | 10.0.x |