CVE-2017-7774: Mozilla Firefox

Critical severity, CVSS 9.1. EPSS: 1.4% chance of exploitation in the next 30 days.

Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Silf::readGraphite function.

Affected products

  • Mozilla Firefox: before 54.0 (fixed in 54.0)
  • Sil GRAPHITE2: before 1.3.10 (fixed in 1.3.10)

Published 2019-04-15. Last modified 2026-06-17.