CVE-2018-18500

Name
CVE-2018-18500
Description
A use-after-free vulnerability can occur while parsing an HTML5 stream in concert with custom HTML elements. This results in the stream parser object being freed while still in use, leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 60.5, Firefox ESR < 60.5, and Firefox < 65.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Vendor Advisory https://www.mozilla.org/security/advisories/mfsa2019-03/
Vendor Advisory https://www.mozilla.org/security/advisories/mfsa2019-02/
Vendor Advisory https://www.mozilla.org/security/advisories/mfsa2019-01/
Third Party Advisory https://www.debian.org/security/2019/dsa-4376
Third Party Advisory https://usn.ubuntu.com/3874-1/
Mailing List https://lists.debian.org/debian-lts-announce/2019/01/msg00025.html
Third Party Advisory https://access.redhat.com/errata/RHSA-2019:0270
Third Party Advisory https://access.redhat.com/errata/RHSA-2019:0269
Third Party Advisory https://access.redhat.com/errata/RHSA-2019:0219
Third Party Advisory https://access.redhat.com/errata/RHSA-2019:0218
Third Party Advisory http://www.securityfocus.com/bid/106781
Third Party Advisory https://www.debian.org/security/2019/dsa-4392
Mailing List https://lists.debian.org/debian-lts-announce/2019/02/msg00024.html
Third Party Advisory https://usn.ubuntu.com/3897-1/
Third Party Advisory https://security.gentoo.org/glsa/201903-04
GENTOO https://security.gentoo.org/glsa/201904-07
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-07/msg00021.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* thunderbird >= None < 60.5
cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:* firefox_esr >= None < 60.5
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* firefox >= None < 65.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status