CVE-2017-7758 PUBLISHED

An out-of-bounds read vulnerability with the Opus encoder when the number of channels in an audio stream changes while the encoder is in use. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

EPSS 1.68% · 82.1th percentile

Risk Scores

EPSS Score
1.68%
82.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSfirefox44.0.2+build1-0ubuntu1, 49.0+build4-0ubuntu0.16.04.1, 48.0+build2-0ubuntu0.16.04.1
Ubuntu:16.04:LTSthunderbird1:45.8.0+build1-0ubuntu0.16.04.1, 1:45.7.0+build1-0ubuntu0.16.04.1, 1:45.5.1+build1-0ubuntu0.16.04.1
Ubuntu:14.04:LTSfirefox45.0.2+build1-0ubuntu0.14.04.1, 46.0+build5-0ubuntu0.14.04.2, 46.0.1+build1-0ubuntu0.14.04.3
Ubuntu:14.04:LTSthunderbird1:52.1.1+build1-0ubuntu0.14.04.1, 1:45.8.0+build1-0ubuntu0.14.04.1, 1:45.7.0+build1-0ubuntu0.14.04.1

Timeline

References

Open in Interactive Console →