First published: Tue Jun 26 2018(Updated: )
An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 16 GB of RAM. This results in the use of uninitialized memory, resulting in a potentially exploitable crash.
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Thunderbird | <60 | 60 |
Mozilla Firefox ESR | <60.1 | 60.1 |
Mozilla Firefox | <61 | 61 |
Mozilla Firefox | <61.0 | |
Mozilla Firefox ESR | <60.1.0 | |
Mozilla Thunderbird | <60.0 | |
debian/firefox | 132.0.2-1 | |
debian/thunderbird | 1:115.12.0-1~deb11u1 1:128.4.3esr-1~deb11u1 1:115.16.0esr-1~deb12u1 1:128.4.3esr-1~deb12u1 1:128.4.3esr-1 | |
<60 | 60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)