Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Casper

Researcher fromTencent's Xuanwu Lab
#25797of 53,619
9.8Total CVSS
Vulnerabilities · 1
PT-2017-3672
9.8
2017-11-02
Mozilla · Firefox · CVE-2018-5122
Name of the Vulnerable Software and Affected Versions: Mozilla Firefox versions prior to 58 Description: The issue is caused by an integer overflow in the `DoCrypt` function of the WebCrypto interface. This could potentially allow a remote attacker to execute arbitrary code or cause a denial of service. Recommendations: For versions prior to 58, update to version 58 or later to resolve the issue. As a temporary workaround, consider restricting the use of the WebCrypto interface until a patch is available.