CVE-2018-5148

Priority
Medium
Description
A use-after-free vulnerability can occur in the compositor during certain
graphics operations when a raw pointer is used instead of a reference
counted one. This results in a potentially exploitable crash. This
vulnerability affects Firefox ESR < 52.7.3 and Firefox < 59.0.2.
References
Assigned-to
chrisccoulson
Package
Upstream:released (52.7.3esr-1)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 17.10 (Artful Aardvark):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Package
Upstream:released (59.0.2)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):released (59.0.2+build1-0ubuntu0.14.04.1)
Ubuntu 16.04 LTS (Xenial Xerus):released (59.0.2+build1-0ubuntu0.16.04.1)
Ubuntu 17.10 (Artful Aardvark):released (59.0.2+build1-0ubuntu0.17.10.1)
Ubuntu 18.04 LTS (Bionic Beaver):released (59.0.2+build1-0ubuntu1)
Ubuntu 18.10 (Cosmic Cuttlefish):released (59.0.2+build1-0ubuntu1)
More Information

Updated: 2018-06-26 05:03:06 UTC (commit 7799c934cca373482531a7b00e4dfe82302ceae5)