Closed Bug 1480088 (CVE-2018-6156) Opened 6 years ago Closed 5 years ago

WebRTC: Overflow in FEC Processing (project zero)

Categories

(Core :: WebRTC: Audio/Video, defect, P2)

defect

Tracking

()

RESOLVED FIXED
mozilla70
Tracking Status
firefox-esr60 --- disabled
firefox63 --- disabled
firefox70 --- fixed

People

(Reporter: posidron, Assigned: drno)

References

(Blocks 1 open bug)

Details

(Keywords: csectype-bounds, sec-audit, sec-high, Whiteboard: [adv-main70+])

Attachments

(2 files)

WebRTC: Overflow in FEC Processing
Group: core-security
Component: WebRTC → WebRTC: Signaling
The pref 'media.navigator.video.red_ulpfec_enabled' is disabled by default in Firefox. I did enable it now for Domino fuzzing runs.
Component: WebRTC: Signaling → WebRTC: Audio/Video
Rank: 15
Priority: -- → P2
Group: core-security → media-core-security
Rank: 15
Component: WebRTC: Audio/Video → WebRTC: Signaling
Keywords: sec-other
Priority: P2 → --
Summary: WebRTC: Overflow in FEC Processing → WebRTC: Overflow in FEC Processing (project zero)
If this is disabled in Firefox can we unhide the bug? Or were we planning on enabling some time soon?
Component: WebRTC: Signaling → WebRTC: Audio/Video
Flags: needinfo?(drno)
No we are not planing on enabling it soon. So if it's okay to disclose preffed off issues, then we should be able to disclose this one.
Flags: needinfo?(drno)
I'll make it block the bug to enable fec.
Blocks: 875922
Rank: 15
Priority: -- → P2
Assignee: nobody → drno
Status: NEW → ASSIGNED
Group: media-core-security
Status: ASSIGNED → RESOLVED
Closed: 5 years ago
Resolution: --- → FIXED
Target Milestone: --- → mozilla70
Whiteboard: [adv-main70+]
Alias: CVE-2018-6156
Attached file advisory.txt (deleted) —
No longer depends on: 1646904
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: