Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwcx-vhr3-5qc7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

EPSS

Процентиль: 77%
0.01133
Низкий

Дефекты

CWE-362

Связанные уязвимости

ubuntu
около 10 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

redhat
около 10 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

nvd
около 10 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

debian
около 10 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent functio ...

fstec
около 10 лет назад

Уязвимость браузера Firefox, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 77%
0.01133
Низкий

Дефекты

CWE-362