CVE-2016-1953
published 2016-03-13CVE-2016-1953: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45.0 allow remote attackers to cause a denial of service (memory…
PriorityP338high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
3.23%
86.8th percentile
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to js/src/jit/arm/Assembler-arm.cpp, and unknown other vectors.
Affected
24 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | < firefox 45.0-1 (sid) | firefox 45.0-1 (sid) |
| debian | firefox-esr | < firefox 45.0-1 (sid) | firefox 45.0-1 (sid) |
| mozilla | firefox | <= 44.0.2 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | >= 0 < 45.0+build2-0ubuntu0.14.04.1 | 45.0+build2-0ubuntu0.14.04.1 |
| mozilla | firefox | >= 0 < 45.0.2+build1-0ubuntu0.14.04.1 | 45.0.2+build1-0ubuntu0.14.04.1 |
| mozilla | firefox | >= 0 < 45.0.1+build1-0ubuntu0.14.04.2 | 45.0.1+build1-0ubuntu0.14.04.2 |
| mozilla | thunderbird | <= 38.6.0 | — |
| novell | suse_package_hub_for_suse_linux_enterprise | — | — |
| opensuse | leap | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
vendor_ubuntu8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6q2c-pwfh-qfrw: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45
ghsa_unreviewed·2022-05-14
CVE-2016-1953 [HIGH] CWE-119 GHSA-6q2c-pwfh-qfrw: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to js/src/jit/arm/Assembler-arm.cpp, and unknown other vectors.
OSV
firefox regressions
osv·2016-04-19·CVSS 8.8
[HIGH] firefox regressions
firefox regressions
USN-2917-1 fixed vulnerabilities in Firefox. This update caused several
web compatibility regressions.
This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Francis Gabriel discovered a buffer overflow during ASN.1 decoding in NSS.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to cause a denial of service via
application crash, or execute arbitrary code with the privileges of the
user invoking Firefox. (CVE-2016-1950)
Bob Clary, Christoph Diehl, Christian Holler, Andrew McCreight, Daniel
Holbert, Jesse Ruderman, Randell Jesup, Carsten Book, Gian-Carlo Pascutto,
Tyson Smith, Andrea Marchesini, and Jukka Jylänki discovered multiple
memory safety issues in Firefox.
OSV
firefox regressions
osv·2016-04-07·CVSS 8.8
[HIGH] firefox regressions
firefox regressions
USN-2917-1 fixed vulnerabilities in Firefox. This update caused several
regressions that could result in search engine settings being lost, the
list of search providers appearing empty or the location bar breaking
after typing an invalid URL. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Francis Gabriel discovered a buffer overflow during ASN.1 decoding in NSS.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to cause a denial of service via
application crash, or execute arbitrary code with the privileges of the
user invoking Firefox. (CVE-2016-1950)
Bob Clary, Christoph Diehl, Christian Holler, Andrew McCreight, Daniel
Holbert, Jesse Ruderman, Randell Jesup,
OSV
CVE-2016-1953: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45
osv·2016-03-13·CVSS 8.8
CVE-2016-1953 [HIGH] CVE-2016-1953: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to js/src/jit/arm/Assembler-arm.cpp, and unknown other vectors.
OSV
firefox vulnerabilities
osv·2016-03-09·CVSS 8.8
CVE-2016-1950 [HIGH] firefox vulnerabilities
firefox vulnerabilities
Francis Gabriel discovered a buffer overflow during ASN.1 decoding in NSS.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to cause a denial of service via
application crash, or execute arbitrary code with the privileges of the
user invoking Firefox. (CVE-2016-1950)
Bob Clary, Christoph Diehl, Christian Holler, Andrew McCreight, Daniel
Holbert, Jesse Ruderman, Randell Jesup, Carsten Book, Gian-Carlo Pascutto,
Tyson Smith, Andrea Marchesini, and Jukka Jylänki discovered multiple
memory safety issues in Firefox. If a user were tricked in to opening a
specially crafted website, an attacker could potentially exploit these to
cause a denial of service via application crash, or execute arbitrary code
with the
Ubuntu
Firefox regressions
vendor_ubuntu·2016-04-19·CVSS 8.8
[HIGH] Firefox regressions
Title: Firefox regressions
Summary: USN-2917-1 introduced several regressions in Firefox.
USN-2917-1 fixed vulnerabilities in Firefox. This update caused several
web compatibility regressions.
This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Francis Gabriel discovered a buffer overflow during ASN.1 decoding in NSS.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to cause a denial of service via
application crash, or execute arbitrary code with the privileges of the
user invoking Firefox. (CVE-2016-1950)
Bob Clary, Christoph Diehl, Christian Holler, Andrew McCreight, Daniel
Holbert, Jesse Ruderman, Randell Jesup, Carsten Book, Gian-Carlo Pascutto,
Tyson Smith, Andrea Marchesini,
Ubuntu
Firefox regressions
vendor_ubuntu·2016-04-07·CVSS 8.8
[HIGH] Firefox regressions
Title: Firefox regressions
Summary: USN-2917-1 introduced several regressions in Firefox.
USN-2917-1 fixed vulnerabilities in Firefox. This update caused several
regressions that could result in search engine settings being lost, the
list of search providers appearing empty or the location bar breaking
after typing an invalid URL. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Francis Gabriel discovered a buffer overflow during ASN.1 decoding in NSS.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to cause a denial of service via
application crash, or execute arbitrary code with the privileges of the
user invoking Firefox. (CVE-2016-1950)
Bob Clary, Christoph Diehl, Christian H
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2016-03-09·CVSS 8.8
CVE-2016-1950 [HIGH] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Francis Gabriel discovered a buffer overflow during ASN.1 decoding in NSS.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to cause a denial of service via
application crash, or execute arbitrary code with the privileges of the
user invoking Firefox. (CVE-2016-1950)
Bob Clary, Christoph Diehl, Christian Holler, Andrew McCreight, Daniel
Holbert, Jesse Ruderman, Randell Jesup, Carsten Book, Gian-Carlo Pascutto,
Tyson Smith, Andrea Marchesini, and Jukka Jylänki discovered multiple
memory safety issues in Firefox. If a user were tricked in to opening a
specially crafted website, an attacker could p
Red Hat
Mozilla: Miscellaneous memory safety hazards (rv:45.0) (MFSA 2016-16)
vendor_redhat·2016-03-08·CVSS 8.8
CVE-2016-1953 [HIGH] Mozilla: Miscellaneous memory safety hazards (rv:45.0) (MFSA 2016-16)
Mozilla: Miscellaneous memory safety hazards (rv:45.0) (MFSA 2016-16)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to js/src/jit/arm/Assembler-arm.cpp, and unknown other vectors.
Statement: This issue does not affect the version of firefox and thunderbird as shipped with Red Hat Enterprise Linux 5, 6 and 7.
Package: firefox (Red Hat Enterprise Linux 5) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 5) - Not affected
Package: firefox (Red Hat Enterprise Linux 6) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 6) - Not affected
Package: firefox (Red Hat Enterprise L
Debian
CVE-2016-1953: firefox - Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox be...
vendor_debian·2016·CVSS 8.8
CVE-2016-1953 [HIGH] CVE-2016-1953: firefox - Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox be...
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 45.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to js/src/jit/arm/Assembler-arm.cpp, and unknown other vectors.
Scope: local
sid: resolved (fixed in 45.0-1)
No detection rules found.
No public exploits indexed.
arXiv
An Investigation into Inconsistency of Software Vulnerability Severity across Data Sources
arxiv_fulltext·2022-01-16
An Investigation into Inconsistency of Software Vulnerability Severity across Data Sources
An Investigation into Inconsistency of Software Vulnerability Severity across Data Sources
Roland Croft12,
M. Ali Babar12,
Li Li3
1 School of Computer Science, University of Adelaide, Adelaide, Australia, \roland.croft, ali.babar\@adelaide.edu.au
2 Cyber Security Cooperative Research Centre, Australia
3 Faculty of Information Technology, Monash University, Melbourne, Australia, \li.li\@monash.edu
## Abstract
Software Vulnerability (SV) severity assessment is a vital task for informing SV remediation and triage. Ranking of SV severity scores is often used to advise prioritization of patching efforts. However, severity assessment is a difficult and subjective manual task that relies on expertise, knowledge, and standardized reporting schemes. Consequently, different data sources that per
Bugzilla
CVE-2016-1953 Mozilla: Miscellaneous memory safety hazards (rv:45.0) (MFSA 2016-16)
bugzilla·2016-03-08·CVSS 8.8
CVE-2016-1953 [HIGH] CVE-2016-1953 Mozilla: Miscellaneous memory safety hazards (rv:45.0) (MFSA 2016-16)
CVE-2016-1953 Mozilla: Miscellaneous memory safety hazards (rv:45.0) (MFSA 2016-16)
Mozilla developers and fixed several memory safety bugs in the browser engine used in Firefox and other Mozilla-based products. Some of these bugs showed evidence of memory corruption under certain circumstances, and we presume that with enough effort at least some of these could be exploited to run arbitrary code.
Carsten Book, Christoph Diehl, Christian Holler, Andrew McCreight, Daniel Holbert, Gian-Carlo Pascutto, Tyson Smith, Andrea Marchesini, and Jukka Jylänki reported memory safety problems and crashes that affect Firefox 44.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-16.html
Acknowledgements:
Name: the Mozilla project
Upstream: Carsten Book, Christoph Diehl,
http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00027.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00029.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00031.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00050.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00068.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00093.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-07/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-07/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-07/msg00008.htmlhttp://www.mozilla.org/security/announce/2016/mfsa2016-16.htmlhttp://www.securitytracker.com/id/1035215http://www.ubuntu.com/usn/USN-2917-1http://www.ubuntu.com/usn/USN-2917-2http://www.ubuntu.com/usn/USN-2917-3https://bugzilla.mozilla.org/show_bug.cgi?id=1199171https://bugzilla.mozilla.org/show_bug.cgi?id=1205163https://bugzilla.mozilla.org/show_bug.cgi?id=1207958https://bugzilla.mozilla.org/show_bug.cgi?id=1224361https://bugzilla.mozilla.org/show_bug.cgi?id=1224363https://bugzilla.mozilla.org/show_bug.cgi?id=1224369https://bugzilla.mozilla.org/show_bug.cgi?id=1225618https://bugzilla.mozilla.org/show_bug.cgi?id=1234425https://bugzilla.mozilla.org/show_bug.cgi?id=1236519https://bugzilla.mozilla.org/show_bug.cgi?id=1238558https://bugzilla.mozilla.org/show_bug.cgi?id=1238935https://bugzilla.mozilla.org/show_bug.cgi?id=1241731https://bugzilla.mozilla.org/show_bug.cgi?id=1243555https://bugzilla.mozilla.org/show_bug.cgi?id=1243583https://bugzilla.mozilla.org/show_bug.cgi?id=1245866https://bugzilla.mozilla.org/show_bug.cgi?id=1247236https://bugzilla.mozilla.org/show_bug.cgi?id=1248794https://security.gentoo.org/glsa/201605-06http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00027.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00029.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00031.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00050.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00068.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00093.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-07/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-07/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-07/msg00008.htmlhttp://www.mozilla.org/security/announce/2016/mfsa2016-16.htmlhttp://www.securitytracker.com/id/1035215http://www.ubuntu.com/usn/USN-2917-1http://www.ubuntu.com/usn/USN-2917-2http://www.ubuntu.com/usn/USN-2917-3https://bugzilla.mozilla.org/show_bug.cgi?id=1199171https://bugzilla.mozilla.org/show_bug.cgi?id=1205163https://bugzilla.mozilla.org/show_bug.cgi?id=1207958https://bugzilla.mozilla.org/show_bug.cgi?id=1224361https://bugzilla.mozilla.org/show_bug.cgi?id=1224363https://bugzilla.mozilla.org/show_bug.cgi?id=1224369https://bugzilla.mozilla.org/show_bug.cgi?id=1225618https://bugzilla.mozilla.org/show_bug.cgi?id=1234425https://bugzilla.mozilla.org/show_bug.cgi?id=1236519https://bugzilla.mozilla.org/show_bug.cgi?id=1238558https://bugzilla.mozilla.org/show_bug.cgi?id=1238935https://bugzilla.mozilla.org/show_bug.cgi?id=1241731https://bugzilla.mozilla.org/show_bug.cgi?id=1243555https://bugzilla.mozilla.org/show_bug.cgi?id=1243583https://bugzilla.mozilla.org/show_bug.cgi?id=1245866https://bugzilla.mozilla.org/show_bug.cgi?id=1247236https://bugzilla.mozilla.org/show_bug.cgi?id=1248794https://security.gentoo.org/glsa/201605-06
2016-03-13
Published