Related Vulnerabilities: CVE-2017-5437  

Three vulnerabilities were reported in the Libevent library that allow for out-of-bounds reads and denial of service (DoS) attacks: CVE-2016-10195, CVE-2016-10196, and CVE-2016-10197. These were fixed in the Libevent library and these changes were ported to Mozilla code in Firefox 53.

Severity High

Remote Yes

Type Denial of service

Description

Three vulnerabilities were reported in the Libevent library that allow for out-of-bounds reads and denial of service (DoS) attacks: CVE-2016-10195, CVE-2016-10196, and CVE-2016-10197. These were fixed in the Libevent library and these changes were ported to Mozilla code in Firefox 53.

AVG-249 firefox 52.0.2-1 53.0-1 Critical Fixed

21 Apr 2017 ASA-201704-6 AVG-249 firefox Critical multiple issues

https://www.mozilla.org/en-US/security/advisories/mfsa2017-10/#CVE-2017-5437
https://bugzilla.mozilla.org/show_bug.cgi?id=1343453