CVE-2018-12379Out-of-bounds Write in Mozilla Firefox

Severity
7.8HIGHNVD
EPSS
0.1%
top 73.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 18
Latest updateMay 14

Description

When the Mozilla Updater opens a MAR format file which contains a very long item filename, an out-of-bounds write can be triggered, leading to a potentially exploitable crash. This requires running the Mozilla Updater manually on the local system with the malicious MAR file in order to occur. This vulnerability affects Firefox < 62, Firefox ESR < 60.2, and Thunderbird < 60.2.1.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages9 packages

CVEListV5mozilla/firefoxunspecified62
NVDmozilla/firefox< 60.2.0+1
CVEListV5mozilla/firefox_esrunspecified60.2
CVEListV5mozilla/thunderbirdunspecified60.2.1
NVDmozilla/thunderbird< 60.2.1

Also affects: Debian Linux 8.0, 9.0, Enterprise Linux 7.6, 7.5

🔴Vulnerability Details

3
GHSA
GHSA-77mg-phf5-3h8g: When the Mozilla Updater opens a MAR format file which contains a very long item filename, an out-of-bounds write can be triggered, leading to a poten2022-05-14
OSV
CVE-2018-12379: When the Mozilla Updater opens a MAR format file which contains a very long item filename, an out-of-bounds write can be triggered, leading to a poten2018-10-18
CVEList
CVE-2018-12379: When the Mozilla Updater opens a MAR format file which contains a very long item filename, an out-of-bounds write can be triggered, leading to a poten2018-10-18

📋Vendor Advisories

2
Red Hat
Mozilla: Out-of-bounds write with malicious MAR file2018-09-05
Debian
CVE-2018-12379: firefox - When the Mozilla Updater opens a MAR format file which contains a very long item...2018

💬Community

2
Bugzilla
CVE-2018-12379 Mozilla: Out-of-bounds write with malicious MAR file2018-09-05
Bugzilla
CVE-2017-12374 CVE-2017-12375 CVE-2017-12376 CVE-2017-12377 CVE-2017-12378 CVE-2017-12379 CVE-2017-12380 clamav: Multiple vulnerabilities fixed in 0.99.32018-01-29
CVE-2018-12379 — Out-of-bounds Write in Mozilla Firefox | cvebase