CVE-2017-7824
CVE-2017-7824
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS —EPSS 3.6%KEV nãoPoC —Patch referenciado
Ciclo de vida
11 jun 2018Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://access.redhat.com/errata/RHSA-2017:2831https://access.redhat.com/errata/RHSA-2017:2885https://bugzilla.mozilla.org/show_bug.cgi?id=1398381https://lists.debian.org/debian-lts-announce/2017/11/msg00000.htmlhttps://security.gentoo.org/glsa/201803-14https://www.debian.org/security/2017/dsa-3987https://www.debian.org/security/2017/dsa-4014https://www.mozilla.org/security/advisories/mfsa2017-21/https://www.mozilla.org/security/advisories/mfsa2017-22/https://www.mozilla.org/security/advisories/mfsa2017-23/http://www.securityfocus.com/bid/101053http://www.securitytracker.com/id/1039465