CVE-2017-5428
published 2018-06-11CVE-2017-5428: An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to…
PriorityP344critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
3.29%
87.2th percentile
An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to the "createImageBitmap" API. This function runs in the content sandbox, requiring a second vulnerability to compromise a user's computer. This vulnerability affects Firefox ESR < 52.0.1 and Firefox < 52.0.1.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | < firefox 52.0.1-1 (sid) | firefox 52.0.1-1 (sid) |
| debian | firefox-esr | < firefox 52.0.1-1 (sid) | firefox 52.0.1-1 (sid) |
| mozilla | firefox | < 52.0.1 | 52.0.1 |
| mozilla | firefox | >= 0 < 52.0.1+build2-0ubuntu0.14.04.1 | 52.0.1+build2-0ubuntu0.14.04.1 |
| mozilla | firefox | >= 0 < 52.0.1+build2-0ubuntu0.16.04.1 | 52.0.1+build2-0ubuntu0.16.04.1 |
| mozilla | firefox | >= unspecified < 52.0.1 | 52.0.1 |
| mozilla | firefox_esr | < 52.0.1 | 52.0.1 |
| mozilla | firefox_esr | >= unspecified < 52.0.1 | 52.0.1 |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_workstation | — | — |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
vendor_ubuntu9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3c9m-5j33-vjf4: An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest
ghsa_unreviewed·2022-05-14
CVE-2017-5428 [CRITICAL] CWE-190 GHSA-3c9m-5j33-vjf4: An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest
An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to the "createImageBitmap" API. This function runs in the content sandbox, requiring a second vulnerability to compromise a user's computer. This vulnerability affects Firefox ESR < 52.0.1 and Firefox < 52.0.1.
OSV
firefox vulnerability
osv·2017-03-20·CVSS 9.8
CVE-2017-5428 [CRITICAL] firefox vulnerability
firefox vulnerability
An integer overflow was discovered in Firefox. If a user were tricked in
to opening a specially crafted website, an attacker could exploit this to
cause a denial of service via application crash or execute arbitrary code.
(CVE-2017-5428)
OSV
CVE-2017-5428: An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest
osv·2017-03-20·CVSS 9.8
CVE-2017-5428 [CRITICAL] CVE-2017-5428: An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest
An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to the "createImageBitmap" API. This function runs in the content sandbox, requiring a second vulnerability to compromise a user's computer. This vulnerability affects Firefox ESR < 52.0.1 and Firefox < 52.0.1.
Ubuntu
Firefox vulnerability
vendor_ubuntu·2017-03-20·CVSS 9.8
CVE-2017-5428 [CRITICAL] Firefox vulnerability
Title: Firefox vulnerability
Summary: An integer overflow was discovered in Firefox.
An integer overflow was discovered in Firefox. If a user were tricked in
to opening a specially crafted website, an attacker could exploit this to
cause a denial of service via application crash or execute arbitrary code.
(CVE-2017-5428)
Instructions: After a standard system update you need to restart Firefox to make
all the necessary changes.
Red Hat
Mozilla: integer overflow in createImageBitmap() (MFSA 2017-08)
vendor_redhat·2017-03-17·CVSS 9.8
CVE-2017-5428 [CRITICAL] Mozilla: integer overflow in createImageBitmap() (MFSA 2017-08)
Mozilla: integer overflow in createImageBitmap() (MFSA 2017-08)
An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to the "createImageBitmap" API. This function runs in the content sandbox, requiring a second vulnerability to compromise a user's computer. This vulnerability affects Firefox ESR < 52.0.1 and Firefox < 52.0.1.
A flaw was found in the processing of malformed web content. A web page containing malicious content could cause Firefox to crash or, potentially, execute arbitrary code with the privileges of the user running Firefox.
Package: firefox (Red Hat Enterprise Linux 5) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 5) - Not affected
Package: firefox (Re
Debian
CVE-2017-5428: firefox - An integer overflow in "createImageBitmap()" was reported through the Pwn2Own co...
vendor_debian·2017·CVSS 9.8
CVE-2017-5428 [CRITICAL] CVE-2017-5428: firefox - An integer overflow in "createImageBitmap()" was reported through the Pwn2Own co...
An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to the "createImageBitmap" API. This function runs in the content sandbox, requiring a second vulnerability to compromise a user's computer. This vulnerability affects Firefox ESR < 52.0.1 and Firefox < 52.0.1.
Scope: local
sid: resolved (fixed in 52.0.1-1)
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2017-0558.htmlhttp://www.securityfocus.com/bid/96959http://www.securitytracker.com/id/1038060https://bugzilla.mozilla.org/show_bug.cgi?id=1348168https://www.mozilla.org/security/advisories/mfsa2017-08/http://rhn.redhat.com/errata/RHSA-2017-0558.htmlhttp://www.securityfocus.com/bid/96959http://www.securitytracker.com/id/1038060https://bugzilla.mozilla.org/show_bug.cgi?id=1348168https://www.mozilla.org/security/advisories/mfsa2017-08/
2018-06-11
Published