CVE-2016-9894: Buffer Overflow
Published Dec 13, 2016
·Updated
A buffer overflow in SkiaGl caused when a GrGLBuffer is truncated during allocation. Later writers will overflow the buffer, resulting in a potentially exploitable crash.
Affected Software
2 affected componentsFixes available
Mozilla Firefox<50.1
50.1
Mozilla Firefox<50.1
Event History
Dec 13, 2016
CVE Published
12:00 AM
Jun 11, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2016-9894?
CVE-2016-9894 is classified as a critical vulnerability due to the potential for remote code execution and crashes.
2
How do I fix CVE-2016-9894?
To address CVE-2016-9894, update Mozilla Firefox to version 50.1 or later.
3
Which versions of Mozilla Firefox are affected by CVE-2016-9894?
Mozilla Firefox versions prior to 50.1 are affected by CVE-2016-9894.
4
What kind of vulnerability is CVE-2016-9894?
CVE-2016-9894 is a buffer overflow vulnerability that can lead to exploitation and crashes.
5
Can CVE-2016-9894 be exploited remotely?
Yes, CVE-2016-9894 can potentially be exploited remotely due to the nature of the buffer overflow.