Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-5183

Опубликовано: 09 мая 2018
Источник: redhat
CVSS3: 9.8
EPSS Низкий

Описание

Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8firefoxNot affected
Red Hat Enterprise Linux 8thunderbirdNot affected
Red Hat Enterprise Linux 6firefoxFixedRHSA-2018:141414.05.2018
Red Hat Enterprise Linux 6thunderbirdFixedRHSA-2018:172624.05.2018
Red Hat Enterprise Linux 7firefoxFixedRHSA-2018:141514.05.2018
Red Hat Enterprise Linux 7thunderbirdFixedRHSA-2018:172524.05.2018

Показывать по

Дополнительная информация

Статус:

Critical
Дефект:
CWE-120
https://bugzilla.redhat.com/show_bug.cgi?id=1576283Mozilla: Backport critical security fixes in Skia

EPSS

Процентиль: 88%
0.04116
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.

CVSS3: 9.8
nvd
больше 7 лет назад

Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.

CVSS3: 9.8
debian
больше 7 лет назад

Mozilla developers backported selected changes in the Skia library. Th ...

CVSS3: 9.8
github
больше 3 лет назад

Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.

CVSS3: 9.8
fstec
больше 7 лет назад

Уязвимость браузера Firefox ESR, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

EPSS

Процентиль: 88%
0.04116
Низкий

9.8 Critical

CVSS3