CVE-2016-1968 PUBLISHED

Integer underflow in Brotli, as used in Mozilla Firefox before 45.0, allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via crafted data with brotli compression.

EPSS 1.81% · 82.7th percentile

Risk Scores

EPSS Score
1.81%
82.7th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSfirefox0, 24.0+build1-0ubuntu1, 25.0+build3-0ubuntu0.13.10.1
Ubuntu:16.04:LTSbrotli0, 0.2.0+dfsg-1, 0.3.0+dfsg-1

Timeline

References

Open in Interactive Console →