Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6pgw-6qm8-r947

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

EPSS

Процентиль: 85%
0.02795
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

redhat
больше 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

nvd
больше 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote attackers to obtain sensitive information from process heap memory or cause a denial of service (out-of-bounds read) via an image that is improperly handled during transformation.

debian
больше 11 лет назад

The QCMS implementation in Mozilla Firefox before 37.0 allows remote a ...

fstec
больше 11 лет назад

Уязвимость браузера Firefox, позволяющая удалённому злоумышленнику получить доступ к динамической памяти процесса или вызвать отказ в обслуживании

EPSS

Процентиль: 85%
0.02795
Низкий

Дефекты

CWE-119