CVE-2018-5177: Buffer Overflow
Published May 9, 2018
·Updated
A vulnerability exists in XSLT during number formatting where a negative buffer size may be allocated in some instances, leading to a buffer overflow and crash if it occurs.
Affected Software
7 affected componentsFixes available
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=16.04
Canonical Ubuntu Linux=17.10
Canonical Ubuntu Linux=18.04
Mozilla Firefox<60.0
Mozilla Firefox<60
60
debian/firefox
148.0-1
Event History
May 9, 2018
CVE Published
12:00 AM
Jun 11, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Data Sourced
via NVD·09:29 PM
DescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·11:06 PM
Description
Nov 29, 2025
Data Sourced
via Ubuntu·06:16 PM
RemedyDescriptionSeverityAffected Software
Feb 28, 2026
Data Sourced
via Debian·12:56 AM
DescriptionAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-5154
- CVE-2018-5155
- CVE-2018-5157
- CVE-2018-5158
- CVE-2018-5159
- CVE-2018-5160
- CVE-2018-5152
- CVE-2018-5153
- CVE-2018-5163
- CVE-2018-5164
- CVE-2018-5166
- CVE-2018-5167
- CVE-2018-5168
- CVE-2018-5169
- CVE-2018-5172
- CVE-2018-5173
- CVE-2018-5174
- CVE-2018-5175
- CVE-2018-5176
- CVE-2018-5177
- CVE-2018-5165
- CVE-2018-5180
- CVE-2018-5181
- CVE-2018-5182
- CVE-2018-5179
- CVE-2018-5151
- CVE-2018-5150
Frequently Asked Questions
1
What is CVE-2018-5177?
CVE-2018-5177 is a vulnerability in XSLT during number formatting where a negative buffer size may be allocated in some instances, leading to a buffer overflow and crash if it occurs.
2
Which software is affected by CVE-2018-5177?
Firefox < 60 is affected by CVE-2018-5177.
3
How severe is CVE-2018-5177?
CVE-2018-5177 has a severity rating of 7.5 (high).
4
How can I fix CVE-2018-5177?
Upgrade to Firefox version 60 or higher to fix CVE-2018-5177.
5
Where can I find more information about CVE-2018-5177?
You can find more information about CVE-2018-5177 at the following references: [1] [2] [3]