CVE-2018-18504

A crash and out-of-bounds read can occur when the buffer of a texture client is freed while it is still in use during graphic operations. This results is a potentially exploitable crash and the possibility of reading from the memory of the freed buffers. This vulnerability affects Firefox < 65.
References
Link Resource
https://www.mozilla.org/security/advisories/mfsa2019-01/ Vendor Advisory
https://usn.ubuntu.com/3874-1/ Third Party Advisory
http://www.securityfocus.com/bid/106773 Third Party Advisory VDB Entry
Configurations

Configuration 1

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*

Information

Published : 2019-02-05 09:29

Updated : 2019-02-07 06:01


NVD link : CVE-2018-18504

Mitre link : CVE-2018-18504

Products Affected
No products.
CWE
CWE-125

Out-of-bounds Read