CVE Vulnerabilities

CVE-2016-1973

Published: Mar 13, 2016 | Modified: Apr 12, 2025
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
5.1 IMPORTANT
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

Race condition in the GetStaticInstance function in the WebRTC implementation in Mozilla Firefox before 45.0 might allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
LinuxOracle5.0 (including)5.0 (including)
LinuxOracle6 (including)6 (including)
LinuxOracle7 (including)7 (including)
Red Hat Enterprise Linux 5RedHatfirefox-0:38.7.0-1.el5_11*
Red Hat Enterprise Linux 6RedHatfirefox-0:38.7.0-1.el6_7*
Red Hat Enterprise Linux 7RedHatfirefox-0:38.7.0-1.el7_2*
FirefoxUbuntuprecise*
FirefoxUbuntutrusty*
FirefoxUbuntuupstream*
FirefoxUbuntuwily*

References