When adding a range to an object in the DOM, it is possible to use "addRange" to add the range to an incorrect root object. This triggers a use-after-free, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 52 and Thunderbird < 52.
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Arch Linux | arch-linux-upgrade-latest | Jul 11, 2025 | Jun 11, 2018 | |
| Freebsd | freebsd-upgrade-package-firefoxfreebsd-upgrade-package-seamonkeyfreebsd-upgrade-package-linux-seamonkeyfreebsd-upgrade-package-firefox-esrfreebsd-upgrade-package-linux-firefoxfreebsd-upgrade-package-libxulfreebsd-upgrade-package-thunderbirdfreebsd-upgrade-package-linux-thunderbird | Mar 8, 2017 | Mar 7, 2017 | |
| Mfsa2017 05 | mozilla-firefox-upgrade-52_0 | Mar 8, 2017 | Mar 7, 2017 | |
| Mozilla Thunderbird | mozilla-thunderbird-upgrade-52_0 | Apr 11, 2017 | Apr 5, 2017 | |
| Oracle Solaris | oracle-solaris-11-3-upgrade-mail-thunderbird-52-2-0-0-175-3-22-0-3-0oracle-solaris-11-3-upgrade-mail-thunderbird-plugin-thunderbird-lightning-52-2-0-0-175-3-22-0-3-0oracle-solaris-11-3-upgrade-web-browser-firefox-52-2-0-0-175-3-22-0-2-0oracle-solaris-11-3-upgrade-web-browser-firefox-plugin-firefox-java-52-2-0-0-175-3-22-0-2-0oracle-solaris-11-3-upgrade-web-data-firefox-bookmarks-52-2-0-0-175-3-22-0-2-0 | Jul 19, 2017 | Jul 19, 2017 | |
| Suse | — | suse-upgrade-mozillafirefoxsuse-upgrade-mozillafirefox-develsuse-upgrade-mozillafirefox-translations-commonsuse-upgrade-mozillafirefox-translations-othersuse-upgrade-mozillathunderbirdsuse-upgrade-mozillathunderbird-buildsymbolssuse-upgrade-mozillathunderbird-develsuse-upgrade-mozillathunderbird-translations-commonsuse-upgrade-mozillathunderbird-translations-other | Mar 15, 2017 | Mar 7, 2017 |
| Ubuntu | ubuntu-upgrade-firefox | Mar 8, 2017 | Mar 7, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub