CVE-2018-5155: Use After Free
A use-after-free vulnerability can occur while adjusting layout during SVG animations with text paths. This results in a potentially exploitable crash.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-5183
- CVE-2018-5184
- CVE-2018-5154
- CVE-2018-5155
- CVE-2018-5159
- CVE-2018-5161
- CVE-2018-5162
- CVE-2018-5170
- CVE-2018-5168
- CVE-2018-5174
- CVE-2018-5178
- CVE-2018-5185
- CVE-2018-5150
- CVE-2018-5157
- CVE-2018-5158
- CVE-2018-5160
- CVE-2018-5152
- CVE-2018-5153
- CVE-2018-5163
- CVE-2018-5164
- CVE-2018-5166
- CVE-2018-5167
- CVE-2018-5169
- CVE-2018-5172
- CVE-2018-5173
- CVE-2018-5175
- CVE-2018-5176
- CVE-2018-5177
- CVE-2018-5165
- CVE-2018-5180
- CVE-2018-5181
- CVE-2018-5182
- CVE-2018-5179
- CVE-2018-5151
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2018-5155.
What is the severity of CVE-2018-5155?
The severity of CVE-2018-5155 is critical.
Which software versions are affected by CVE-2018-5155?
CVE-2018-5155 affects Thunderbird < 52.8, Thunderbird ESR < 52.8, Firefox < 60, and Firefox ESR < 52.8.
How can I fix CVE-2018-5155?
To fix CVE-2018-5155, update your software to Thunderbird 52.8 or later, Thunderbird ESR 52.8 or later, Firefox 60 or later, or Firefox ESR 52.8 or later.
Where can I find more information about CVE-2018-5155?
You can find more information about CVE-2018-5155 in the following references: [Link 1](https://bugzilla.mozilla.org/show_bug.cgi?id=1448774), [Link 2](https://www.mozilla.org/security/advisories/mfsa2018-11/), [Link 3](https://www.mozilla.org/security/advisories/mfsa2018-12/).