Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-5378

Опубликовано: 11 июн. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an object's content using these hash codes. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

РелизСтатусПримечание
devel

not-affected

51.0.1+build2-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [51.0.1+build2-0ubuntu0.14.04.1]]
precise

released

51.0.1+build2-0ubuntu0.12.04.1
trusty

released

51.0.1+build2-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [51.0.1+build2-0ubuntu0.14.04.1]
upstream

released

51
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

released

51.0.1+build2-0ubuntu0.16.04.1
yakkety

released

51.0.1+build2-0ubuntu0.16.10.1

Показывать по

РелизСтатусПримечание
devel

released

1:45.7.0+build1-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1:45.7.0+build1-0ubuntu0.14.04.1]]
precise

released

1:45.7.0+build1-0ubuntu0.12.04.1
trusty

released

1:45.7.0+build1-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [1:45.7.0+build1-0ubuntu0.14.04.1]
upstream

needs-triage

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

released

1:45.7.0+build1-0ubuntu0.16.04.1
yakkety

released

1:45.7.0+build1-0ubuntu0.16.10.1

Показывать по

EPSS

Процентиль: 82%
0.01795
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 9 лет назад

Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an object's content using these hash codes. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

CVSS3: 7.5
nvd
больше 7 лет назад

Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an object's content using these hash codes. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

CVSS3: 7.5
debian
больше 7 лет назад

Hashed codes of JavaScript objects are shared between pages. This allo ...

CVSS3: 7.5
github
больше 3 лет назад

Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an object's content using these hash codes. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

oracle-oval
почти 9 лет назад

ELSA-2017-0238: thunderbird security update (IMPORTANT)

EPSS

Процентиль: 82%
0.01795
Низкий

5 Medium

CVSS2

7.5 High

CVSS3