PT-2016-3357 · Mozilla+6 · Firefox+8

Dveditz

·

Publicado

2016-11-29

·

Atualizado

2025-09-29

·

CVE-2016-9079

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 50.0.2 Firefox ESR versions prior to 45.5.1 Thunderbird versions prior to 45.5.1
Description A use-after-free vulnerability in SVG Animation has been discovered, allowing a remote attacker to execute arbitrary code. An exploit has been found in the wild, targeting Firefox and Tor Browser users on Windows.
Recommendations For Mozilla Firefox versions prior to 50.0.2, update to version 50.0.2 or later. For Firefox ESR versions prior to 45.5.1, update to version 45.5.1 or later. For Thunderbird versions prior to 45.5.1, update to version 45.5.1 or later.

Exploit

Correção

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2025_16880
ALT-PU-2016-2388
BDU:2021-05334
CESA-2016_2843
CESA-2016_2850
CVE-2016-9079
DLA-730-1
DLA-752-1
DSA-3728-1
DSA-3730-1
ELSA-2016-2843
ELSA-2016-2850
MGASA-2016-0409
MGASA-2016-0410
OPENSUSE-SU-2016:3019-1
OPENSUSE-SU-2016_2991-1
OPENSUSE-SU-2016_2994-1
OPENSUSE-SU-2016_3011-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:10230-1
OPENSUSE-SU-2024:14572-1
RHSA-2016:2843
RHSA-2016:2850
RHSA-2016_2843
RHSA-2016_2850
SUSE-SU-2016:3048-1
SUSE-SU-2016:3080-1
SUSE-SU-2016:3105-1
SUSE-SU-2016_3048-1
SUSE-SU-2016_3080-1
SUSE-SU-2016_3105-1
USN-3140-1
USN-3141-1

Produtos afetados

Alt Linux
Centos
Firefox Esr
Firefox
Red Hat
Suse
Thunderbird
Tor Browser
Ubuntu