Red Hat Bugzilla – Bug 1429778
CVE-2017-5400 Mozilla: asm.js JIT-spray bypass of ASLR and DEP (MFSA 2017-06)
Last modified: 2017-03-14 02:38:09 EDT
JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. External Reference: https://www.mozilla.org/en-US/security/advisories/mfsa2017-06/#CVE-2017-5400 Acknowledgements: Name: the Mozilla project Upstream: Rh0
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2017:0461 https://rhn.redhat.com/errata/RHSA-2017-0461.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 5 Via RHSA-2017:0459 https://rhn.redhat.com/errata/RHSA-2017-0459.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 7 Via RHSA-2017:0498 https://rhn.redhat.com/errata/RHSA-2017-0498.html