Уязвимость повреждения памяти в Firefox и Thunderbird из-за некорректной обработки памяти при сборке мусора в JavaScript
Описание
Ошибка в управлении инкрементальной очисткой памяти при сборке мусора в JavaScript может привести к повреждению памяти, что вызывает потенциально эксплуатируемое аварийное завершение работы.
Затронутые версии ПО
- Firefox версии до 52
- Firefox ESR версии до 45.8
- Thunderbird версии до 52
- Thunderbird версии до 45.8
Тип уязвимости
- Повреждение памяти
- Аварийное завершение работы (crash)
Ссылки
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- ExploitIssue TrackingVendor Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- ExploitIssue TrackingVendor Advisory
Уязвимые конфигурации
Одно из
EPSS
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
Связанные уязвимости
Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is managed for memory cleanup. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is managed for memory cleanup. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
Memory corruption resulting in a potentially exploitable crash during ...
Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is managed for memory cleanup. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
EPSS
9.8 Critical
CVSS3
7.5 High
CVSS2