First published: Tue Mar 07 2017(Updated: )
A segmentation fault can occur in the Skia graphics library during some canvas operations due to issues with mask/clip intersection and empty masks.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | <52 | 52 |
Thunderbird | <52 | 52 |
Firefox | <52.0 | |
Thunderbird | <52.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-5406 has been classified as a high severity vulnerability due to the potential for a segmentation fault.
To fix CVE-2017-5406, update Mozilla Firefox and Thunderbird to version 52.0 or later.
CVE-2017-5406 affects Mozilla Firefox and Mozilla Thunderbird versions up to 52.
CVE-2017-5406 can potentially lead to remote code execution if exploited properly.
CVE-2017-5406 is triggered during specific canvas operations that involve mask/clip intersection and empty masks.