Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-5375

Опубликовано: 24 янв. 2017
Источник: redhat
CVSS3: 9.8
CVSS2: 6.8
EPSS Средний

Описание

JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

Дополнительная информация

Статус:

Critical
https://bugzilla.redhat.com/show_bug.cgi?id=1416271Mozilla: Excessive JIT code allocation allows bypass of ASLR and DEP (MFSA 2017-02)

EPSS

Процентиль: 98%
0.61729
Средний

9.8 Critical

CVSS3

6.8 Medium

CVSS2

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

CVSS3: 9.8
nvd
больше 7 лет назад

JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

CVSS3: 9.8
debian
больше 7 лет назад

JIT code allocation can allow for a bypass of ASLR and DEP protections ...

CVSS3: 9.8
github
больше 3 лет назад

JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

oracle-oval
почти 9 лет назад

ELSA-2017-0238: thunderbird security update (IMPORTANT)

EPSS

Процентиль: 98%
0.61729
Средний

9.8 Critical

CVSS3

6.8 Medium

CVSS2