Уязвимость повреждения памяти через обход ASLR и DEP защит в Firefox и Thunderbird с использованием JIT-spray и heap spray в asm.js
Описание
Уязвимость позволяет злоумышленнику обойти защиты ASLR (рандомизация адресного пространства) и DEP (предотвращение выполнения данных) с помощью JIT-spray, направленного на asm.js, в комбинации с heap spray. Это может привести к атакам, связанным с повреждением памяти.
Затронутые версии ПО
- Firefox до версии 52
- Firefox ESR до версии 45.8
- Thunderbird до версии 52
- Thunderbird ESR до версии 45.8
Тип уязвимости
- Повреждение памяти
- Обход защит ASLR и DEP
Ссылки
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Issue TrackingPermissions Required
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Issue TrackingPermissions Required
Уязвимые конфигурации
Одно из
Одно из
EPSS
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
Связанные уязвимости
JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
JIT-spray targeting asm.js combined with a heap spray allows for a byp ...
JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
EPSS
9.8 Critical
CVSS3
7.5 High
CVSS2