Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h4wj-cg8v-jxq5

Опубликовано: 22 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

An attacker could have caused a use-after-free by forcing a text reflow in an SVG object leading to a potentially exploitable crash. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.

An attacker could have caused a use-after-free by forcing a text reflow in an SVG object leading to a potentially exploitable crash. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.

EPSS

Процентиль: 34%
0.00131
Низкий

8.8 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 2 лет назад

An attacker could have caused a use-after-free by forcing a text reflow in an SVG object leading to a potentially exploitable crash. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.

CVSS3: 8.8
redhat
больше 3 лет назад

An attacker could have caused a use-after-free by forcing a text reflow in an SVG object leading to a potentially exploitable crash. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.

CVSS3: 8.8
nvd
больше 2 лет назад

An attacker could have caused a use-after-free by forcing a text reflow in an SVG object leading to a potentially exploitable crash. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.

CVSS3: 8.8
debian
больше 2 лет назад

An attacker could have caused a use-after-free by forcing a text reflo ...

CVSS3: 8.8
fstec
больше 3 лет назад

Уязвимость браузера Mozilla Firefox, связанная с использованием памяти после освобождения, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 34%
0.00131
Низкий

8.8 High

CVSS3

Дефекты

CWE-416