ZeroHour

CVE-2017-7824

CVSS 3.0
9.8 critical
EPSS
4%p89
Published
()
Modified
Description

A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.

Vendors
redhatdebianmozilla
Products
enterprise linux aus, enterprise linux desktop, enterprise linux eus, enterprise linux server, enterprise linux workstation, debian linux, firefox, thunderbird
Weakness
CWE-119
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.