Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:17942
HistoryMay 02, 2019 - 6:10 a.m.

Out-of-bounds Write

2019-05-0206:10:07
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.011 Low

EPSS

Percentile

84.7%

Thunderbird, Firefox ESR, and Firefox are vulnerable to out-of-bounds write. ClearKeyDecryptor function can be exploited by a remote attacker to cause out-of-bounds write via decrypting some Clearkey-encrypted media content. This may lead to writing of arbitrary data within memory, resulting in a potentially exploitable crash.