Уязвимость выполнения произвольного кода и DoS атаки в реализации cairo-dwrite в Mozilla Firefox, Thunderbird и SeaMonkey на некоторых конфигурациях Windows
Описание
Реализация cairo-dwrite в Mozilla Firefox, Thunderbird и SeaMonkey при использовании определённых конфигураций Windows Vista и Windows 7 некорректно ограничивает попытки рендеринга шрифтов. Это позволяет злоумышленникам вызвать DoS атаку (повреждение памяти) и, возможно, выполнить произвольный код через неопределенные векторы.
Затронутые версии ПО
- Mozilla Firefox 4.x до 11.0
- Mozilla Firefox ESR 10.x до версии 10.0.4
- Mozilla Thunderbird 5.0 до 11.0
- Mozilla Thunderbird ESR 10.x до версии 10.0.4
- SeaMonkey до версии 2.9
Тип уязвимости
- DoS атака (повреждение памяти)
- Исполнение произвольного кода
Ссылки
- Not ApplicablePermissions Required
- Not ApplicablePermissions Required
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Issue Tracking
- Not ApplicablePermissions Required
- Not ApplicablePermissions Required
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Issue Tracking
Уязвимые конфигурации
Одно из
Одно из
Одно из
Одно из
Одно из
EPSS
9.3 Critical
CVSS2
Дефекты
Связанные уязвимости
The cairo-dwrite implementation in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonkey before 2.9, when certain Windows Vista and Windows 7 configurations are used, does not properly restrict font-rendering attempts, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.
The cairo-dwrite implementation in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonkey before 2.9, when certain Windows Vista and Windows 7 configurations are used, does not properly restrict font-rendering attempts, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.
The cairo-dwrite implementation in Mozilla Firefox 4.x through 11.0, F ...
The cairo-dwrite implementation in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonkey before 2.9, when certain Windows Vista and Windows 7 configurations are used, does not properly restrict font-rendering attempts, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.
EPSS
9.3 Critical
CVSS2