EUVD-2016-9900
A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting Firefox and Tor Browser users on Windows. This vulnerability affects Firefox < 50.0.2, Firefox ESR < 45.5.1, and Thunderbird < 45.5.1.
- EUVD state
- Present in the current official mapping
- Known exploitation
- Recorded by ENISA since 22 Jun 2023. Evidence sources: cisa_kev.
- ENISA score
- 7.5 · CVSS 3.1
- Advisory evidence
- 8 linked advisory records
Only statements that explicitly mention a fix, patch, update, workaround or mitigation are shown here.
- csaf_redhat · RHSA-2016:2843Red Hat Security Advisory: firefox security update
- csaf_suse · SUSE-SU-2016:3105-1Security update for MozillaFirefox, mozilla-nss
- csaf_opensuse · openSUSE-SU-2016:3019-1Security update for MozillaThunderbird
- csaf_redhat · RHSA-2016:2850Red Hat Security Advisory: thunderbird security update
- csaf_suse · SUSE-SU-2016:3080-1Security update for MozillaFirefox, mozilla-nss
- csaf_suse · SUSE-SU-2016:3048-1Security update for MozillaFirefox
