CVE-2017-7778
11.06.2018, 21:29
A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and writes, and the use of uninitialized memory. These issues were addressed in Graphite 2 version 1.3.10. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.Enginsight
Vendor | Product | Version |
---|---|---|
mozilla | firefox | 𝑥 < 54.0 |
mozilla | firefox_esr | 𝑥 < 52.2.0 |
mozilla | thunderbird | 𝑥 < 52.2.0 |
debian | debian_linux | 8.0 |
debian | debian_linux | 9.0 |
sil | graphite2 | 𝑥 < 1.3.10 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
firefox |
| ||||||||||||
firefox-esr |
| ||||||||||||
graphite2 |
|

Ubuntu Releases
Ubuntu Product | |||||||||
---|---|---|---|---|---|---|---|---|---|
firefox |
| ||||||||
graphite2 |
| ||||||||
thunderbird |
|
Common Weakness Enumeration
References