Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6pgw-6qm8-r947

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

EPSS

Процентиль: 73%
0.00765
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

redhat
почти 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

nvd
почти 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

debian
почти 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote a ...

fstec
почти 11 лет назад

Уязвимость браузера Firefox, позволяющая удалённому злоумышленнику получить доступ к динамической памяти процесса или вызвать отказ в обслуживании

EPSS

Процентиль: 73%
0.00765
Низкий

Дефекты

CWE-119