CVE-2017-7804
published 2018-06-11CVE-2017-7804: The destructor function for the "WindowsDllDetourPatcher" class can be re-purposed by malicious code in concert with another vulnerability to write arbitrary…
PriorityP341high7.5CVSS 3.0
AVNACLPRNUINSUCNIHAN
EPSS
1.51%
71.5th percentile
The destructor function for the "WindowsDllDetourPatcher" class can be re-purposed by malicious code in concert with another vulnerability to write arbitrary data to an attacker controlled location in memory. This can be used to bypass existing memory protections in this situation. Note: This attack only affects Windows operating systems. Other operating systems are not affected. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | — | — |
| debian | firefox-esr | — | — |
| mozilla | firefox | < 52.3.0 | 52.3.0 |
| mozilla | firefox | < 55.0 | 55.0 |
| mozilla | firefox | >= unspecified < 55 | 55 |
| mozilla | firefox_esr | >= unspecified < 52.3 | 52.3 |
| mozilla | thunderbird | < 52.3.0 | 52.3.0 |
| mozilla | thunderbird | >= unspecified < 52.3 | 52.3 |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
vendor_debian7.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2017-7804: firefox - The destructor function for the "WindowsDllDetourPatcher" class can be re-purpos...
vendor_debian·2017·CVSS 7.5
CVE-2017-7804 [HIGH] CVE-2017-7804: firefox - The destructor function for the "WindowsDllDetourPatcher" class can be re-purpos...
The destructor function for the "WindowsDllDetourPatcher" class can be re-purposed by malicious code in concert with another vulnerability to write arbitrary data to an attacker controlled location in memory. This can be used to bypass existing memory protections in this situation. Note: This attack only affects Windows operating systems. Other operating systems are not affected. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.
Scope: local
sid: resolved
GHSA
GHSA-ggg7-2mjh-7h65: The destructor function for the "WindowsDllDetourPatcher" class can be re-purposed by malicious code in concert with another vulnerability to write ar
ghsa_unreviewed·2022-05-14
CVE-2017-7804 [HIGH] CWE-20 GHSA-ggg7-2mjh-7h65: The destructor function for the "WindowsDllDetourPatcher" class can be re-purposed by malicious code in concert with another vulnerability to write ar
The destructor function for the "WindowsDllDetourPatcher" class can be re-purposed by malicious code in concert with another vulnerability to write arbitrary data to an attacker controlled location in memory. This can be used to bypass existing memory protections in this situation. Note: This attack only affects Windows operating systems. Other operating systems are not affected. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/100234http://www.securitytracker.com/id/1039124https://bugzilla.mozilla.org/show_bug.cgi?id=1372849https://www.mozilla.org/security/advisories/mfsa2017-18/https://www.mozilla.org/security/advisories/mfsa2017-19/https://www.mozilla.org/security/advisories/mfsa2017-20/http://www.securityfocus.com/bid/100234http://www.securitytracker.com/id/1039124https://bugzilla.mozilla.org/show_bug.cgi?id=1372849https://www.mozilla.org/security/advisories/mfsa2017-18/https://www.mozilla.org/security/advisories/mfsa2017-19/https://www.mozilla.org/security/advisories/mfsa2017-20/
2018-06-11
Published