CVE-2017-7779
Summary
| CVE | CVE-2017-7779 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-06-11 21:29:00 UTC |
| Updated | 2018-08-01 12:04:00 UTC |
| Description | Memory safety bugs were reported in Firefox 54, Firefox ESR 52.2, and Thunderbird 52.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Debian -- Security Information -- DSA-3968-1 icedove |
DEBIAN |
www.debian.org |
Third Party Advisory |
| Bug List |
CONFIRM |
bugzilla.mozilla.org |
Issue Tracking, Permissions Required, Third Party Advisory |
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
Third Party Advisory |
| Mozilla Firefox Multiple Bugs Let Remote Users Spoof Content, Obtain Potentially Sensitive Information, Deny Service and Execute Arbitrary Code - SecurityTracker |
SECTRACK |
www.securitytracker.com |
Third Party Advisory, VDB Entry |
| Security vulnerabilities fixed in Firefox ESR 52.3 — Mozilla |
CONFIRM |
www.mozilla.org |
Vendor Advisory |
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
Third Party Advisory |
| Mozilla Thunderbird: Multiple vulnerabilities (GLSA 201803-14) — Gentoo security |
GENTOO |
security.gentoo.org |
Third Party Advisory |
| Mozilla Firefox CVE-2017-7779 Multiple Unspecified Memory Corruption Vulnerabilities |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| Security vulnerabilities fixed in Firefox 55 — Mozilla |
CONFIRM |
www.mozilla.org |
Vendor Advisory |
| Security vulnerabilities fixed in Thunderbird 52.3 — Mozilla |
CONFIRM |
www.mozilla.org |
Vendor Advisory |
| Debian -- Security Information -- DSA-3928-1 firefox-esr |
DEBIAN |
www.debian.org |
Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 710287 Gentoo Linux Mozilla Firefox Multiple Vulnerabilities (GLSA 201802-03)
- 710303 Gentoo Linux Mozilla Thunderbird Multiple Vulnerabilities (GLSA 201803-14)