Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-46884

Опубликовано: 24 авг. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.8

Описание

A potential use-after-free vulnerability existed in SVG Images if the Refresh Driver was destroyed at an inopportune time. This could have lead to memory corruption or a potentially exploitable crash. Note: This advisory was added on December 13th, 2022 after discovering it was inadvertently left out of the original advisory. The fix was included in the original release of Firefox 106. This vulnerability affects Firefox < 106.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

esm-infra/focal

DNE

focal

not-affected

116.0+build2-0ubuntu0.20.04.2
jammy

not-affected

lunar

not-affected

mantic

not-affected

noble

not-affected

trusty

ignored

end of standard support
upstream

released

106.0-1

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

ignored

esm-apps/noble

ignored

esm-infra/focal

DNE

focal

DNE

jammy

ignored

lunar

ignored

end of life, was needs-triage
mantic

ignored

end of life, was needs-triage
noble

ignored

trusty

DNE

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

DNE

esm-apps/bionic

ignored

esm-infra/focal

DNE

focal

DNE

jammy

DNE

lunar

DNE

mantic

DNE

noble

DNE

trusty

DNE

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

DNE

esm-apps/focal

ignored

esm-infra/bionic

ignored

focal

ignored

jammy

DNE

lunar

DNE

mantic

DNE

noble

DNE

trusty

DNE

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-infra/focal

ignored

focal

ignored

jammy

DNE

lunar

DNE

mantic

DNE

noble

DNE

trusty

DNE

upstream

ignored

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-apps/jammy

ignored

esm-infra/focal

DNE

focal

DNE

jammy

ignored

lunar

ignored

end of life, was needs-triage
mantic

DNE

noble

DNE

trusty

DNE

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-infra/focal

DNE

focal

DNE

jammy

ignored

lunar

DNE

mantic

DNE

noble

DNE

trusty

DNE

upstream

ignored

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

esm-infra/focal

DNE

focal

not-affected

jammy

not-affected

lunar

ignored

end of life, was needed
mantic

not-affected

noble

not-affected

trusty

ignored

end of standard support
upstream

needs-triage

Показывать по

EPSS

Процентиль: 38%
0.00159
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
почти 2 года назад

A potential use-after-free vulnerability existed in SVG Images if the Refresh Driver was destroyed at an inopportune time. This could have lead to memory corruption or a potentially exploitable crash. *Note*: This advisory was added on December 13th, 2022 after discovering it was inadvertently left out of the original advisory. The fix was included in the original release of Firefox 106. This vulnerability affects Firefox < 106.

CVSS3: 8.8
debian
почти 2 года назад

A potential use-after-free vulnerability existed in SVG Images if the ...

CVSS3: 8.8
github
почти 2 года назад

A potential use-after-free vulnerability existed in SVG Images if the Refresh Driver was destroyed at an inopportune time. This could have lead to memory corruption or a potentially exploitable crash. *Note*: This advisory was added on December 13th, 2022 after discovering it was inadvertently left out of the original advisory. The fix was included in the original release of Firefox 106. This vulnerability affects Firefox < 106.

CVSS3: 10
fstec
почти 2 года назад

Уязвимость браузеров Firefox, связанная с использованием памяти после ее освобождения, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 8.8
redos
почти 2 года назад

Множественные уязвимости thunderbird

EPSS

Процентиль: 38%
0.00159
Низкий

8.8 High

CVSS3

Уязвимость CVE-2022-46884