CVE-2017-7771: High severity firefox vulnerability
An out of bounds read flaw related to "graphite2::Pass::readPass" has been reported in graphite2. An attacker could possibly exploit this flaw to disclose potentially sensitive memory or cause an application crash.
Other sources
Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Pass::readPass function.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-7771?
The CVE-2017-7771 vulnerability has been classified as a moderate severity issue.
How do I fix CVE-2017-7771?
To resolve CVE-2017-7771, update to Firefox version 54.0 or later, Firefox ESR versions as specified, or the patched versions of the Graphite2 library.
What software is affected by CVE-2017-7771?
CVE-2017-7771 affects Firefox, Firefox ESR, and the Graphite2 library on various versions.
What kind of vulnerability is CVE-2017-7771?
CVE-2017-7771 is classified as an out-of-bounds read vulnerability potentially leading to memory disclosure or application crashes.
Can CVE-2017-7771 be exploited remotely?
Yes, an attacker could exploit CVE-2017-7771 remotely to disclose sensitive information or crash applications.