Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-26381
HistoryDec 22, 2022 - 8:15 p.m.

Design/Logic Flaw

2022-12-2220:15:00
PRIOn knowledge base
www.prio-n.com
9
use-after-free
text reflow
svg object
exploitable crash
firefox
thunderbird
vulnerability

8.4 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

73.4%

An attacker could have caused a use-after-free by forcing a text reflow in an SVG object leading to a potentially exploitable crash. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.

CPENameOperatorVersion
firefoxlt98.0
firefox_esrlt91.7
thunderbirdlt91.7