CVE-2017-7828Use After Free in Mozilla Firefox

CWE-416Use After Free14 documents8 sources
Severity
9.8CRITICALNVD
EPSS
28.9%
top 3.43%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 11
Latest updateMay 14

Description

A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use. This results in a potentially exploitable crash during these operations. This vulnerability affects Firefox < 57, Firefox ESR < 52.5, and Thunderbird < 52.5.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages11 packages

CVEListV5mozilla/firefoxunspecified57
NVDmozilla/firefox< 57.0+1
CVEListV5mozilla/firefox_esrunspecified52.5
Ubuntumozilla/firefox< 57.0+build4-0ubuntu0.14.04.4+1
CVEListV5mozilla/thunderbirdunspecified52.5

Also affects: Debian Linux 7.0, 8.0, 9.0, Enterprise Linux 7.4, 7.5

🔴Vulnerability Details

8
GHSA
GHSA-f749-pqmw-rvhp: A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use2022-05-14
OSV
CVE-2017-7828: A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use2018-06-11
CVEList
CVE-2017-7828: A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use2018-06-11
OSV
firefox regression2018-01-03
OSV
thunderbird vulnerabilities2017-12-01

📋Vendor Advisories

4
Ubuntu
Thunderbird vulnerabilities2017-12-01
Ubuntu
Firefox vulnerabilities2017-11-16
Red Hat
Mozilla: Use-after-free of PressShell while restyling layout (MFSA 2017-25)2017-11-15
Debian
CVE-2017-7828: firefox - A use-after-free vulnerability can occur when flushing and resizing layout becau...2017

💬Community

1
Bugzilla
CVE-2017-7828 Mozilla: Use-after-free of PressShell while restyling layout (MFSA 2017-25)2017-11-15
CVE-2017-7828 — Use After Free in Mozilla Firefox | cvebase