Overview
Mozilla Firefox contains a use-after-free vulnerability in the SVG animation functionality, which may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system.
Description
Mozilla Firefox supports SVG animation through the use of SMIL. The nsSMILTimeContainer object contains a use-after-free vulnerability, which can allow arbitrary code execution. Exploit code for this vulnerability is publicly available, which specifically targets the Tor Browser Bundle. |
Impact
By convincing a use to view specially-crafted web content, a remote-unauthenticated attacker may be able to execute arbitrary code on an affected system. |
Solution
Apply an update |
Disable JavaScript
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | 7.5 | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Temporal | 6.5 | E:H/RL:OF/RC:C |
Environmental | 6.5 | CDP:ND/TD:H/CR:ND/IR:ND/AR:ND |
References
Acknowledgements
This document was written by Will Dormann.
Other Information
CVE IDs: | CVE-2016-9079 |
Date Public: | 2016-11-29 |
Date First Published: | 2016-11-30 |
Date Last Updated: | 2016-12-02 19:56 UTC |
Document Revision: | 16 |