CVE-2017-7778
11.06.2018, 21:29
A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and writes, and the use of uninitialized memory. These issues were addressed in Graphite 2 version 1.3.10. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mozilla | firefox | 𝑥 < 52.2.0 |
| mozilla | firefox | 𝑥 < 54.0 |
| mozilla | thunderbird | 𝑥 < 52.2.0 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| sil | graphite2 | 𝑥 < 1.3.10 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| firefox |
| ||||||||||||
| firefox-esr |
| ||||||||||||
| graphite2 |
|
Ubuntu Releases
Ubuntu Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| firefox |
| ||||||||
| graphite2 |
| ||||||||
| thunderbird |
|
Common Weakness Enumeration
References