CVE-2017-7793: Use After Free
A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially exploitable crash.
Affected Software
Remediation
Patch Available
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2017-7793?
CVE-2017-7793 is a use-after-free vulnerability affecting Firefox, Firefox ESR, and Thunderbird.
What is the severity of CVE-2017-7793?
The severity of CVE-2017-7793 is critical with a CVSS score of 9.8.
Which software versions are affected by CVE-2017-7793?
Firefox versions prior to 56, Firefox ESR versions prior to 52.4, and Thunderbird versions prior to 52.4 are affected by CVE-2017-7793.
How can I fix CVE-2017-7793?
Upgrade to Firefox 56 or later, Firefox ESR 52.4 or later, or Thunderbird 52.4 or later to fix CVE-2017-7793.
Where can I find more information about CVE-2017-7793?
You can find more information about CVE-2017-7793 on the Mozilla Bugzilla, Mozilla Security Advisories, and SecurityFocus websites.