Oval Definition:oval:com.ubuntu.xenial:def:201778450000000
Revision Date:2018-06-11Version:1
Title:CVE-2017-7845 on Ubuntu 16.04 LTS (xenial) - medium.
Description:A buffer overflow occurs when drawing and validating elements using Direct 3D 9 with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. Note: This attack only affects Windows operating systems. Other operating systems are unaffected. This vulnerability affects Thunderbird < 52.5.2, Firefox ESR < 52.5.2, and Firefox < 57.0.2.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7845
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • NOT firefox package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT firefox-globalmenu package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT firefox-mozsymbols package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT firefox-testsuite package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT thunderbird package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT thunderbird-globalmenu package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT thunderbird-gnome-support package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT thunderbird-mozsymbols package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT xul-ext-calendar-timezones package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT xul-ext-gdata-provider package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT xul-ext-lightning package in xenial, while related to the CVE in some way, is not affected.
  • BACK