CVE-2017-5411
A use-after-free can occur during buffer storage operations within the ANGLE graphics library, used for WebGL content. The buffer storage can be freed while still in use in some circumstances, leading to a potentially exploitable crash. Note: This issue is in "libGLES", which is only in use on Windows. Other operating systems are not affected. This vulnerability affects Firefox < 52 and Thunderbird < 52.
- Affected products
- Alt Linux, Angle, Firefox, Thunderbird
- Mozilla Firefox
- < 52.0
- Fix
- Available
- CVSS 3.0
- 7.5 HIGH
- EPSS
- 1.8% (76th percentile)
- Weakness
- CWE-416
- NVD status
- Modified
- Published
- 2018-06-11
CVE-2017-5411 at NVD
No indexed exploits for CVE-2017-5411 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2017-5411 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.