VDB
BDU%3A2023-02783
BDU%3A2023-02783
PUBLISHED
CVSS 4.900000095367432 MEDIUM
Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с выходом операции за границы буфера в памяти в процессе некорректного программного рендеринга видео с кодировкой H.264, позволяющая нарушителю выполнить атаку типа «отказ в обслуживании» (DoS)
Risk Scores
CVSS 2.0
4.900000095367432
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., ООО «РусБИТех-Астра», Сообщество свободного программного обеспечения, Canonical Ltd., АО «ИВК», Mozilla Corp. | Red Hat Enterprise Linux, Astra Linux Special Edition (запись в едином реестре российских программ №369), Debian GNU/Linux, Ubuntu, Альт 8 СП (запись в едином реестре российских программ №4305), Thunderbird, Firefox ESR, Firefox |
Timeline
- May 24, 2023 CVE Published
- Sep 30, 2024 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Security Advisory
- Mar 19, 2026 Security Advisory
References
- https://www.mozilla.org/security/advisories/mfsa2022-40/ url
- https://www.mozilla.org/security/advisories/mfsa2022-41/ url
- https://www.mozilla.org/security/advisories/mfsa2022-42/ url
- https://security-tracker.debian.org/tracker/CVE-2022-3266 url
- https://access.redhat.com/security/cve/CVE-2022-3266 url
- https://ubuntu.com/security/notices/USN-5649-1 url
- https://ubuntu.com/security/notices/USN-5724-1 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20220829SE16 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2022-1221SE17MD advisory
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20221220SE16 advisory