Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jmp9-fm29-29mr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

EPSS

Процентиль: 73%
0.01544
Низкий

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 5 лет назад

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

CVSS3: 8.8
redhat
больше 5 лет назад

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

CVSS3: 8.8
nvd
больше 5 лет назад

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

CVSS3: 8.8
debian
больше 5 лет назад

If the Compact() method was called on an nsTArray, the array could hav ...

oracle-oval
больше 5 лет назад

ELSA-2020-5257: firefox security update (IMPORTANT)

EPSS

Процентиль: 73%
0.01544
Низкий

Дефекты

CWE-416