CVE-2018-5158Code Injection in Mozilla Firefox

Severity
8.8HIGHNVD
OSV9.8
EPSS
43.0%
top 2.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 11
Latest updateApr 26

Description

The PDF viewer does not sufficiently sanitize PostScript calculator functions, allowing malicious JavaScript to be injected through a crafted PDF file. This JavaScript can then be run with the permissions of the PDF viewer by its worker. This vulnerability affects Firefox ESR < 52.8 and Firefox < 60.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages7 packages

CVEListV5mozilla/firefoxunspecified60
NVDmozilla/firefox< 52.8.0+1
CVEListV5mozilla/firefox_esrunspecified52.8
Ubuntumozilla/firefox< 60.0+build2-0ubuntu0.14.04.1+5

Also affects: Debian Linux 7.0, 8.0, 9.0, Ubuntu Linux 14.04, 16.04, 17.10, 18.04, Enterprise Linux 7.6, 7.5

🔴Vulnerability Details

6
GHSA
Malicious PDF can inject JavaScript into PDF Viewer2022-05-14
OSV
Malicious PDF can inject JavaScript into PDF Viewer2022-05-14
OSV
CVE-2018-5158: The PDF viewer does not sufficiently sanitize PostScript calculator functions, allowing malicious JavaScript to be injected through a crafted PDF file2018-06-11
CVEList
CVE-2018-5158: The PDF viewer does not sufficiently sanitize PostScript calculator functions, allowing malicious JavaScript to be injected through a crafted PDF file2018-06-11
OSV
firefox regression2018-05-18

📋Vendor Advisories

4
Oracle
Oracle Oracle Siebel CRM Risk Matrix: eDetailing (PDF Viewer) — CVE-2018-51582022-10-15
Ubuntu
Firefox vulnerabilities2018-05-11
Red Hat
Mozilla: Malicious PDF can inject JavaScript into PDF Viewer2018-05-09
Debian
CVE-2018-5158: firefox - The PDF viewer does not sufficiently sanitize PostScript calculator functions, a...2018

💬Community

3
Bugzilla
Arbitrary Javascript injection in PDF.js through FontMatrix2024-04-26
HackerOne
XSS in PDF Viewer2020-05-23
Bugzilla
CVE-2018-5158 Mozilla: Malicious PDF can inject JavaScript into PDF Viewer2018-05-09
CVE-2018-5158 — Code Injection in Mozilla Firefox | cvebase