Get a Pentest and security assessment of your IT network.

2021-current

CVE-2016-5258 – Use-after-free vulnerability in the WebRTC socket thread in Mozilla Firef

Use-after-free vulnerability in the WebRTC socket thread in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote attackers to execute arbitrary code by leveraging incorrect free operations on DTLS objects during the shutdown of a WebRTC session.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5258

Reference (s):

  • BID:92258
  • URL: http://www.securityfocus.com/bid/92258
  • http://www.mozilla.org/security/announce/2016/mfsa2016-72.html
  • http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
  • https://bugzilla.mozilla.org/show_bug.cgi?id=1279146
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-7794 - The Knights of the Void (aka me.narr8.android.serial.knights_of_the_void)

2021-current

CVE-2019-9723 - LogicalDOC Community Edition 8.x before 8.2.1 has a path traversal vulner

2021-current

CVE-2020-13653 - An XSS vulnerability exists in the Webmail component of Zimbra Collaborat