CVE-2016-5273: High severity firefox vulnerability
A potentially exploitable crash in accessibility.
Other sources
The mozilla::a11y::HyperTextAccessible::GetChildOffset function in the accessibility implementation in Mozilla Firefox before 49.0 allows remote attackers to execute arbitrary code via a crafted web site.
— Launchpad
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2016-5273?
CVE-2016-5273 is a vulnerability in Mozilla Firefox that allows remote attackers to execute arbitrary code via a crafted web site.
What is the severity of CVE-2016-5273?
The severity of CVE-2016-5273 is high (8.8).
How does CVE-2016-5273 affect Mozilla Firefox?
CVE-2016-5273 affects Mozilla Firefox versions up to and excluding version 49.0.
How do I fix CVE-2016-5273 in Mozilla Firefox?
To fix CVE-2016-5273 in Mozilla Firefox, update to version 49.0 or later.
Where can I find more information about CVE-2016-5273?
You can find more information about CVE-2016-5273 on the Mozilla Bugzilla page (https://bugzilla.mozilla.org/show_bug.cgi?id=1280387) and the Mozilla security advisories (https://www.mozilla.org/en-US/security/advisories/mfsa2016-85/ and http://www.mozilla.org/security/announce/2016/mfsa2016-85.html).