cbcvebase.
CVE-2018-5144
published 2018-06-11

CVE-2018-5144: An integer overflow can occur during conversion of text to some Unicode character sets due to an unchecked length parameter. This vulnerability affects Firefox…

high7.3CVSS 3.0
AVNACLPRNUINSUCLILAL
An integer overflow can occur during conversion of text to some Unicode character sets due to an unchecked length parameter. This vulnerability affects Firefox ESR < 52.7 and Thunderbird < 52.7.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianfirefox-esr< firefox-esr 52.7.0esr-1 (bookworm)firefox-esr 52.7.0esr-1 (bookworm)
debianthunderbird< firefox-esr 52.7.0esr-1 (bookworm)firefox-esr 52.7.0esr-1 (bookworm)
mozillafirefox< 52.7.052.7.0
mozillafirefox_esr>= unspecified < 52.752.7
mozillathunderbird< 52.7.052.7.0
mozillathunderbird>= 0 < 1:52.7.0-11:52.7.0-1
mozillathunderbird>= 0 < 1:52.7.0-11:52.7.0-1
mozillathunderbird>= 0 < 1:52.7.0-11:52.7.0-1
mozillathunderbird>= 0 < 1:52.7.0-11:52.7.0-1
mozillathunderbird>= 0 < 1:52.7.0+build1-0ubuntu0.14.04.11:52.7.0+build1-0ubuntu0.14.04.1
mozillathunderbird>= 0 < 1:52.7.0+build1-0ubuntu0.16.04.11:52.7.0+build1-0ubuntu0.16.04.1
mozillathunderbird>= unspecified < 52.752.7
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_eus

CVSS provenance

nvdv3.07.3HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
osv8.8HIGH