CLD-328 Details

Other IDs this deficiency may be known by:

CVE ID CVE-2018-5146 (nvd) (mitre) (debian) (archlinux) (red hat) (suse) (ubuntu)
Other ID(s)

Basic Information:

Affected Package(s) firefox
Deficiency Type SECURITY
Date Created 2018-03-16 18:41:33
Date Last Modified 2018-03-17 15:39:39

Version Specific Information:

Cucumber 1.0 i686fixed in firefox-52.7.2esr-i686-1
Cucumber 1.0 x86_64fixed in firefox-52.7.2esr-x86_64-1

Cucumber 1.1 i686 fixed in firefox-52.7.2esr-i686-1
Cucumber 1.1 x86_64 fixed in firefox-52.7.2esr-x86_64-1

Details:

An out of bounds memory write while processing Vorbis audio data was reported
through the Pwn2Own contest. Fixed in Firefox 52.7.2esr. For more information
see: https://www.mozilla.org/en-US/security/advisories/mfsa2018-08/