← back
CVE-2017-5404

CVE-2017-5404

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 17%
from disclosure to weapon0 days
Published on NVDJun 11
1st PoCMar 20
exploitation probability
17%top 3% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This results in a potentially exploitable crash. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.