Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jmp9-fm29-29mr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

EPSS

Процентиль: 71%
0.00665
Низкий

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 5 лет назад

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

CVSS3: 8.8
redhat
около 5 лет назад

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

CVSS3: 8.8
nvd
около 5 лет назад

If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

CVSS3: 8.8
debian
около 5 лет назад

If the Compact() method was called on an nsTArray, the array could hav ...

oracle-oval
около 5 лет назад

ELSA-2020-5257: firefox security update (IMPORTANT)

EPSS

Процентиль: 71%
0.00665
Низкий

Дефекты

CWE-416