CVE-2017-5437

Metadata

unknown
unknown
firefox, thunderbird
CVE-2017-5437
cve.mitre.org, mozilla.org, ubuntu.com, ubuntu.com
2017-04-20
2017-07-05 21:15
CVE-2017-5437 firefox-esr
CVE-2017-5437 firefox
2017-06-16 19:22
2017-06-15 02:34
2017-05-17 00:03
2017-05-10 23:50
2017-04-27 01:04
2017-04-21 18:03
2017-04-20 22:04

Description

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10195, CVE-2016-10196, CVE-2016-10197. Reason: This candidate is a duplicate of CVE-2016-10195, CVE-2016-10196, and CVE-2016-10197. Notes: All CVE users should reference CVE-2016-10195, CVE-2016-10196, and/or CVE-2016-10197 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

Am I vulnerable?

The constraints below list the versions that this vulnerability is patched in, and versions that are unaffected. If a patch is ready but unrealeased, then it is pending.

Or, you can just let us figure it out for you! Appcanary continously monitor your installed packages, and tell you if any of them are vulnerable.

Sign up for monitoring

Affected package information

Release Package Patched in
devel firefox None
thunderbird 1:52.1.1+build1-0ubuntu1
trusty firefox 53.0+build6-0ubuntu0.14.04.1
thunderbird 1:52.1.1+build1-0ubuntu0.14.04.1
upstream firefox 53.0
thunderbird 52.1.1
xenial firefox 53.0+build6-0ubuntu0.16.04.1
thunderbird 1:52.1.1+build1-0ubuntu0.16.04.1
yakkety firefox 53.0+build6-0ubuntu0.16.10.1
thunderbird 1:52.1.1+build1-0ubuntu0.16.10.1
zesty firefox 53.0+build6-0ubuntu0.17.04.1
thunderbird 1:52.1.1+build1-0ubuntu0.17.04.1

Unaffected

Release Package Reason
precise firefox ignored
thunderbird ignored
precise/esm firefox DNE
thunderbird DNE
vivid/ubuntu-core firefox DNE
thunderbird DNE
vivid/stable-phone-overlay firefox DNE
thunderbird DNE