CVE-2017-7824
CVE-2017-7824
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 3.6%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
11 jun 2018Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://access.redhat.com/errata/RHSA-2017:2831https://access.redhat.com/errata/RHSA-2017:2885https://bugzilla.mozilla.org/show_bug.cgi?id=1398381https://lists.debian.org/debian-lts-announce/2017/11/msg00000.htmlhttps://security.gentoo.org/glsa/201803-14https://www.debian.org/security/2017/dsa-3987https://www.debian.org/security/2017/dsa-4014https://www.mozilla.org/security/advisories/mfsa2017-21/https://www.mozilla.org/security/advisories/mfsa2017-22/https://www.mozilla.org/security/advisories/mfsa2017-23/http://www.securityfocus.com/bid/101053http://www.securitytracker.com/id/1039465