CVE-2016-9079

Confirmed PUBLISHED

A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild...

Mozilla · Firefox, Firefox ESR, Thunderbird
Exploited in the wild PoC available

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
Confirmed
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
In CISA KEV
CVSS / EPSS
7.5 High

At a Glance

A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting Firefox and Tor Browser users on Windows. This vulnerability affects Firefox < 50.0.2, Firefox ESR < 45.5.1, and Thunderbird < 45.5.1.

windows metasploit cisa
CVE Published
Jun 11, 2018
Exploitation Reported
Jun 22, 2023
CVSS
7.5 High
EPSS
Remote Low complexity No user interaction Unauthenticated

Affected Versions

Vendor Product Version Status
Mozilla
Firefox

unspecified to < 50.0.2

Affected
Mozilla
Firefox ESR

unspecified to < 45.5.1

Affected
Mozilla
Thunderbird

unspecified to < 45.5.1

Affected

CVE References

  • DSA-3730 debian.org · Vendor Advisory https://www.debian.org/security/2016/dsa-3730
  • RHSA-2016:2843 rhn.redhat.com · Vendor Advisory http://rhn.redhat.com/errata/RHSA-2016-2843.html
  • GLSA-201701-35 security.gentoo.org · Vendor Advisory https://security.gentoo.org/glsa/201701-35
  • RHSA-2016:2850 rhn.redhat.com · Vendor Advisory http://rhn.redhat.com/errata/RHSA-2016-2850.html
  • GLSA-201701-15 security.gentoo.org · Vendor Advisory https://security.gentoo.org/glsa/201701-15
Show 6 more references
  • 42327 exploit-db.com · Exploit https://www.exploit-db.com/exploits/42327/
  • 41151 exploit-db.com · Exploit https://www.exploit-db.com/exploits/41151/
  • 1037370 securitytracker.com · VDB Entry http://www.securitytracker.com/id/1037370
  • 94591 securityfocus.com · VDB Entry http://www.securityfocus.com/bid/94591
  • mozilla.org/security/advisories/mfsa2016-92 mozilla.org · CVE Record https://www.mozilla.org/security/advisories/mfsa2016-92/
  • bugzilla.mozilla.org/show_bug.cgi bugzilla.mozilla.org · CVE Record https://bugzilla.mozilla.org/show_bug.cgi?id=1321066

Recommended Actions

  • Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
  • Check enrichment artifacts for scanner coverage and available PoCs before rolling remediation validation.
  • Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.