← back
CVE-2017-7813

CVE-2017-7813

EPSS 1.6%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 1.6%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
11 Jun 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Inside the JavaScript parser, a cast of an integer to a narrower type can result in data read from outside the buffer being parsed. This usually results in a non-exploitable crash, but can leak a limited amount of information from memory if it matches JavaScript identifier syntax. This vulnerability affects Firefox < 56.
Affected products
Mozilla · Firefox

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →