CVE-2018-18503: Buffer Overflow
Last updated 25 August 2025
Other sources
When JavaScript is used to create and manipulate an audio buffer, a potentially exploitable crash may occur because of a compartment mismatch in some situations.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 65 - Upgrade
Upgrade
debian/firefoxto a version that resolves this vulnerability.Fixed in 152.0-1
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2018-18503?
CVE-2018-18503 is a vulnerability that can potentially cause a crash when JavaScript is used to create and manipulate an audio buffer in Firefox version 65 and earlier.
How severe is CVE-2018-18503?
CVE-2018-18503 has a severity rating of 8.8, which is considered high.
Which software is affected by CVE-2018-18503?
Firefox versions earlier than 65 are affected by CVE-2018-18503.
How can I fix CVE-2018-18503?
To fix CVE-2018-18503, make sure you update your Firefox browser to version 65 or later.
Where can I find more information about CVE-2018-18503?
You can find more information about CVE-2018-18503 on the Mozilla security advisories website and the Bugzilla page linked in the references.