Описание
The libtremor library has the same flaw as CVE-2018-5146. This library is used by Firefox in place of libvorbis on Android and ARM platforms. This vulnerability affects Firefox ESR < 52.7.2 and Firefox < 59.0.1.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | released | 59.0.1+build1-0ubuntu1 |
| cosmic | released | 59.0.1+build1-0ubuntu1 |
| devel | released | 59.0.1+build1-0ubuntu1 |
| disco | released | 59.0.1+build1-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needs-triage] |
| precise/esm | DNE | |
| trusty | ignored | end of standard support |
| trusty/esm | DNE | trusty was needs-triage |
| upstream | released | 59.0.1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | DNE | |
| bionic | DNE | |
| cosmic | DNE | |
| devel | DNE | |
| disco | DNE | |
| esm-infra-legacy/trusty | DNE | |
| precise/esm | DNE | |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 1.0.2+svn18153-1+deb9u1build0.17.10.1 |
| bionic | not-affected | 1.0.2+svn18153-1+deb9u1 |
| cosmic | not-affected | 1.0.2+svn18153-1+deb9u1 |
| devel | not-affected | 1.0.2+svn18153-1+deb9u1 |
| disco | not-affected | 1.0.2+svn18153-1+deb9u1 |
| esm-apps/bionic | not-affected | 1.0.2+svn18153-1+deb9u1 |
| esm-apps/xenial | released | 1.0.2+svn18153-0.2+deb7u1build0.16.04.1 |
| esm-infra-legacy/trusty | released | 1.0.2+svn18153-0.2+deb7u1build0.14.04.1 |
| precise/esm | DNE | |
| trusty | released | 1.0.2+svn18153-0.2+deb7u1build0.14.04.1 |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
The libtremor library has the same flaw as CVE-2018-5146. This library is used by Firefox in place of libvorbis on Android and ARM platforms. This vulnerability affects Firefox ESR < 52.7.2 and Firefox < 59.0.1.
The libtremor library has the same flaw as CVE-2018-5146. This library ...
The libtremor library has the same flaw as CVE-2018-5146. This library is used by Firefox in place of libvorbis on Android and ARM platforms. This vulnerability affects Firefox ESR < 52.7.2 and Firefox < 59.0.1.
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3