[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Thunderbird - (bulletinjan2017)

ID: oval:org.secpod.oval:def:2100689Date: (C)2019-12-30   (M)2023-12-07
Class: PATCHFamily: unix




Use-after-free vulnerability in the mozilla::a11y::DocAccessible::ProcessInvalidationList function in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via an aria-owns attribute.

Platform:
Sun Solaris 11
Product:
web/data/firefox-bookmarks
web/browser/firefox
mail/thunderbird
mail/thunderbird/plugin/thunderbird-lightning
developer/yasm
Reference:
bulletinjan2017
CVE-2016-5276
CVE-2016-5250
CVE-2016-5257
CVE-2016-5270
CVE-2016-5272
CVE-2016-5274
CVE-2016-5277
CVE-2016-5278
CVE-2016-5280
CVE-2016-5284
CVE-2016-5290
CVE-2016-5291
CVE-2016-5294
CVE-2016-5296
CVE-2016-5297
CVE-2016-9066
CVE-2016-9074
CVE    17
CVE-2016-5270
CVE-2016-5280
CVE-2016-5291
CVE-2016-9066
...
CPE    1
cpe:/o:oracle:solaris:11

© SecPod Technologies