PT-2017-4041 · Mozilla+2 · Firefox+2
Nils
·
Publicado
2017-11-15
·
Atualizado
2024-12-12
·
CVE-2018-5100
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Firefox versions prior to 58
Description
A use-after-free issue can occur when arguments passed to the
IsPotentiallyScrollable function are freed while still in use by scripts, resulting in a potentially exploitable crash. This issue may allow a remote attacker to cause a denial of service.Recommendations
For versions prior to 58, update to version 58 or later to resolve the issue. As a temporary workaround, consider disabling the
IsPotentiallyScrollable function until a patch is available.Correção
Use After Free
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alt Linux
Firefox
Ubuntu