JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. External Reference: https://www.mozilla.org/en-US/security/advisories/mfsa2017-06/#CVE-2017-5400 Acknowledgements: Name: the Mozilla project Upstream: Rh0
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2017:0461 https://rhn.redhat.com/errata/RHSA-2017-0461.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 5 Via RHSA-2017:0459 https://rhn.redhat.com/errata/RHSA-2017-0459.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 7 Via RHSA-2017:0498 https://rhn.redhat.com/errata/RHSA-2017-0498.html