First published: Tue Oct 23 2018(Updated: )
Mozilla developers and community members reported memory safety bugs present in Firefox ESR 60.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. External Reference: <a href="https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/#CVE-2018-12389">https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/#CVE-2018-12389</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox ESR |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1642179 is considered high due to the potential for memory corruption that could lead to arbitrary code execution.
To fix REDHAT-BUG-1642179, you should update Mozilla Firefox ESR to the latest version that addresses the memory safety vulnerabilities.
REDHAT-BUG-1642179 affects Mozilla Firefox ESR versions prior to the patches issued for the reported memory safety vulnerabilities.
Yes, REDHAT-BUG-1642179 can potentially be exploited remotely if an attacker crafts malicious web content.
Ignoring REDHAT-BUG-1642179 could allow attackers to execute arbitrary code on affected systems, compromising their security.