CVE-2017-5455: High severity Mozilla Firefox vulnerability
Last updated 24 July 2024
Other sources
The internal feed reader APIs that crossed the sandbox barrier allowed for a sandbox escape and escalation of privilege if combined with another vulnerability that resulted in remote code execution inside the sandboxed process.
— Mozilla
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2017-5433
- CVE-2017-5435
- CVE-2017-5436
- CVE-2017-5461
- CVE-2017-5459
- CVE-2017-5466
- CVE-2017-5434
- CVE-2017-5432
- CVE-2017-5460
- CVE-2017-5438
- CVE-2017-5439
- CVE-2017-5440
- CVE-2017-5441
- CVE-2017-5442
- CVE-2017-5464
- CVE-2017-5443
- CVE-2017-5444
- CVE-2017-5446
- CVE-2017-5447
- CVE-2017-5465
- CVE-2017-5448
- CVE-2016-10196
- CVE-2017-5454
- CVE-2017-5455
- CVE-2017-5456
- CVE-2017-5469
- CVE-2017-5445
- CVE-2017-5449
- CVE-2017-5450
- CVE-2017-5451
- CVE-2017-5462
- CVE-2017-5463
- CVE-2017-5467
- CVE-2017-5452
- CVE-2017-5453
- CVE-2017-5458
- CVE-2017-5468
- CVE-2017-5430
- CVE-2017-5429
Frequently Asked Questions
What is the severity of CVE-2017-5455?
CVE-2017-5455 has a high severity rating due to its potential for sandbox escape and privilege escalation.
How do I fix CVE-2017-5455?
To fix CVE-2017-5455, users should update to the latest version of Firefox or Firefox ESR.
What versions of Firefox are affected by CVE-2017-5455?
CVE-2017-5455 affects Firefox versions up to 53.0 and Firefox ESR versions up to 52.1.0.
Is CVE-2017-5455 a remote code execution vulnerability?
Yes, CVE-2017-5455 can lead to remote code execution if combined with another vulnerability.
Can CVE-2017-5455 affect Red Hat Enterprise Linux?
Yes, CVE-2017-5455 can affect Red Hat Enterprise Linux 7.0 and associated products.