CVE-2017-7750: Use After Free
A use-after-free vulnerability during video control operations when a "<track>" element holds a reference to an older window if that window has been replaced in the DOM. This results in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.
Other sources
A use-after-free vulnerability during video control operations when a <track> element holds a reference to an older window if that window has been replaced in the DOM. This results in a potentially exploitable crash.
Affected Software
Remediation
Patch Available
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2017-5472
- CVE-2017-7749
- CVE-2017-7750
- CVE-2017-7751
- CVE-2017-7755
- CVE-2017-7752
- CVE-2017-7754
- CVE-2017-7756
- CVE-2017-7757
- CVE-2017-7778
- CVE-2017-7758
- CVE-2017-7763
- CVE-2017-7764
- CVE-2017-7765
- CVE-2017-5470
- CVE-2017-7759
- CVE-2017-7760
- CVE-2017-7761
- CVE-2017-7762
- CVE-2017-7766
- CVE-2017-7767
- CVE-2017-7768
- CVE-2017-7770
- CVE-2017-5471
Frequently Asked Questions
What is the severity of CVE-2017-7750?
CVE-2017-7750 is classified as a high severity vulnerability due to its potential to cause crashes and security breaches.
How do I fix CVE-2017-7750?
To fix CVE-2017-7750, update Firefox to version 54 or later, Firefox ESR to version 52.2 or later, or Thunderbird to version 52.2 or later.
Which software is affected by CVE-2017-7750?
CVE-2017-7750 affects Firefox versions less than 54, Firefox ESR versions less than 52.2, and Thunderbird versions less than 52.2.
What type of vulnerability is CVE-2017-7750?
CVE-2017-7750 is a use-after-free vulnerability that occurs during video control operations.
Can CVE-2017-7750 be exploited remotely?
Yes, CVE-2017-7750 can be potentially exploited to cause crashes, which may lead to remote code execution.