Related Vulnerabilities: CVE-2017-7826  

Several reported memory safety bugs have been found in Firefox before 57.0 and Thunderbird before 52.5. Some of these bugs showed evidence of memory corruption and with enough effort some of these could probably be exploited to run arbitrary code.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

Several reported memory safety bugs have been found in Firefox before 57.0 and Thunderbird before 52.5. Some of these bugs showed evidence of memory corruption and with enough effort some of these could probably be exploited to run arbitrary code.

AVG-530 thunderbird 52.4.0-2 52.5.0-1 Critical Fixed

AVG-494 firefox 56.0.2-1 57.0-1 Critical Fixed

30 Nov 2017 ASA-201711-43 AVG-530 thunderbird Critical multiple issues

15 Nov 2017 ASA-201711-23 AVG-494 firefox Critical multiple issues

https://www.mozilla.org/en-US/security/advisories/mfsa2017-24/#CVE-2017-7826
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1394530%2C1369561%2C1411458%2C1400003%2C1395138%2C1408412%2C1393840%2C1400763%2C1339259%2C1394265%2C1407740%2C1407751%2C1408005%2C1406398%2C1387799%2C1261175%2C1400554%2C1375146%2C1397811%2C1404636%2C1401804