CVE-2017-7824: Debian Linux
Critical severity, CVSS 9.8. EPSS: 3.6% chance of exploitation in the next 30 days.
A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
Affected products
- Debian Debian Linux: version 7.0 only; version 8.0 only; version 9.0 only
- Mozilla Firefox: before 52.4.0 (fixed in 52.4.0); before 56.0 (fixed in 56.0)
- Mozilla Thunderbird: before 52.4.0 (fixed in 52.4.0)
- Red Hat Enterprise Linux Aus: version 7.4 only
- Red Hat Enterprise Linux Desktop: version 6.0 only; version 7.0 only
- Red Hat Enterprise Linux Eus: version 7.4 only; version 7.5 only
- Red Hat Enterprise Linux Server: version 6.0 only; version 7.0 only
- Red Hat Enterprise Linux Workstation: version 6.0 only; version 7.0 only
Published 2018-06-11. Last modified 2026-06-17.