CVE-2017-7778: Buffer Overflow
A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and writes, and the use of uninitialized memory. These issues were addressed in Graphite 2 version 1.3.10.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2017-5472
- CVE-2017-7749
- CVE-2017-7750
- CVE-2017-7751
- CVE-2017-7755
- CVE-2017-7752
- CVE-2017-7754
- CVE-2017-7756
- CVE-2017-7757
- CVE-2017-7778
- CVE-2017-7758
- CVE-2017-7763
- CVE-2017-7764
- CVE-2017-7765
- CVE-2017-5470
- CVE-2017-7759
- CVE-2017-7760
- CVE-2017-7761
- CVE-2017-7762
- CVE-2017-7766
- CVE-2017-7767
- CVE-2017-7768
- CVE-2017-7770
- CVE-2017-5471
Frequently Asked Questions
What is the severity of CVE-2017-7778?
CVE-2017-7778 has a moderate severity level due to various memory vulnerabilities.
How do I fix CVE-2017-7778?
To fix CVE-2017-7778, upgrade to Graphite 2 version 1.3.10 or later.
Which products are affected by CVE-2017-7778?
CVE-2017-7778 affects products such as Mozilla Firefox, Firefox ESR, and Thunderbird that use the vulnerable Graphite 2 library.
What types of vulnerabilities are included in CVE-2017-7778?
CVE-2017-7778 includes out-of-bounds reads, buffer overflows, and the use of uninitialized memory.
Is there a specific version of Firefox that addresses CVE-2017-7778?
Yes, Mozilla Firefox versions 118.0.2-1 and later resolve CVE-2017-7778.