Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not validate the return value of a GrowAtomTable function call, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger a memory-allocation error and a resulting buffer overflow.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade linux-thunderbirdUpgrade linux-firefoxUpgrade libxulUpgrade thunderbirdUpgrade firefoxUpgrade linux-seamonkeyUpgrade seamonkey | Dec 10, 2025 | Sep 28, 2011 |
| Gentoo Linux | — | Upgrade www-client/mozilla-firefox-bin.Upgrade www-client/icecat.Upgrade www-client/firefox.Upgrade mail-client/thunderbird-bin.Upgrade mail-client/mozilla-thunderbird.Upgrade www-client/mozilla-firefox.Upgrade dev-libs/nss.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/firefox-bin.Upgrade mail-client/thunderbird.Upgrade net-libs/xulrunner-bin.Upgrade www-client/seamonkey-bin.Upgrade www-client/seamonkey.Upgrade net-libs/xulrunner. | Oct 30, 2017 | Sep 28, 2011 |
| Mfsa2011 41 | — | Upgrade to Mozilla Firefox version 7.0 | Jun 14, 2012 | Sep 28, 2011 |
| Mozilla Seamonkey | — | Upgrade to Mozilla SeaMonkey version 2.4.0 | Feb 3, 2012 | Sep 28, 2011 |
| Oracle Solaris | — | Upgrade web/browser/firefox/multi-user-desktop to version 8.0-0.175.0.3.0.4.0 on Solaris 11.0Upgrade web/data/firefox-bookmarks to version 8.0-0.175.0.3.0.4.0 on Solaris 11.0Upgrade web/browser/firefox to version 8.0-0.175.0.3.0.4.0 on Solaris 11.0 | May 29, 2017 | Sep 28, 2011 |
| Suse | — | Upgrade MozillaFirefox-translationsUpgrade MozillaFirefox-develUpgrade MozillaFirefox-translations-commonUpgrade MozillaFirefoxUpgrade MozillaFirefox-translations-other | Feb 17, 2015 | Jul 9, 2013 |
| Ubuntu | — | Upgrade firefox | Nov 8, 2024 | Sep 29, 2011 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub