CVE-2017-5401: Critical severity thunderbird vulnerability
A crash triggerable by web content in which an "ErrorResult" references unassigned memory due to a logic error. The resulting crash may be exploitable. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.
Other sources
A crash triggerable by web content in which an ErrorResult references unassigned memory due to a logic error. The resulting crash may be exploitable.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2017-5400
- CVE-2017-5401
- CVE-2017-5402
- CVE-2017-5404
- CVE-2017-5407
- CVE-2017-5410
- CVE-2017-5408
- CVE-2017-5405
- CVE-2017-5398
- CVE-2017-5403
- CVE-2017-5406
- CVE-2017-5411
- CVE-2017-5412
- CVE-2017-5413
- CVE-2017-5414
- CVE-2017-5416
- CVE-2017-5425
- CVE-2017-5426
- CVE-2017-5418
- CVE-2017-5419
- CVE-2017-5421
- CVE-2017-5422
- CVE-2017-5399
- CVE-2017-5409
- CVE-2017-5415
- CVE-2017-5417
- CVE-2017-5427
- CVE-2017-5420
Frequently Asked Questions
What is the severity of CVE-2017-5401?
CVE-2017-5401 is a critical vulnerability that can lead to crashes and may be exploitable.
How do I fix CVE-2017-5401?
To fix CVE-2017-5401, update to Firefox version 52 or later, or Thunderbird version 52 or later.
Which versions of Firefox are affected by CVE-2017-5401?
CVE-2017-5401 affects Firefox versions below 52.
Which versions of Thunderbird are vulnerable to CVE-2017-5401?
CVE-2017-5401 impacts Thunderbird versions prior to 52.
Is CVE-2017-5401 present in Firefox ESR versions?
Yes, CVE-2017-5401 affects Firefox ESR versions below 45.8.