CVE-2016-9079
Mozilla Firefox, Firefox ESR, and Thunderbird Use-After-Free Vulnerability
7.5
CVSS 3.1
87.4 %
EPSS (current)
2023-06-22
KEV addition
No
Ransomware
Timeline
Publication, first public exploit and KEV addition on a day axis.
Key facts
Vendor / product: Mozilla / Firefox, Firefox ESR, and Thunderbird
Published: 2018-06-11 · Due (CISA): 2023-07-13
CWE: CWE-416 · EU list: no
Exploit references (metadata only)
| Source | Reference | Title | Date |
|---|---|---|---|
| metasploit | exploit/windows/browser/firefox_smil_uaf | exploit/windows/browser/firefox_smil_uaf | 2016-11-30 |
| exploitdb | 41151 | Mozilla Firefox < 50.0.2 - 'nsSMILTimeContainer::NotifyTimeChange()' Remote Code Execution (Metasploit) | 2017-01-24 |
| exploitdb | 42327 | Firefox 50.0.1 - ASM.JS JIT-Spray Remote Code Execution | 2017-07-14 |
References only — no downloads or instructions.