CVE-2018-5183
Publication date 10 May 2018
Last updated 25 August 2025
Ubuntu priority
Cvss 3 Severity Score
Description
Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| thunderbird | 18.04 LTS bionic |
Fixed 1:52.8.0+build1-0ubuntu0.18.04.1
|
| 16.04 LTS xenial |
Fixed 1:52.8.0+build1-0ubuntu0.16.04.1
|
|
| 14.04 LTS trusty |
Fixed 1:52.8.0+build1-0ubuntu0.14.04.1
|
Severity score breakdown
CVSS version: CVSS v3.0
Base score
9.8 · Critical
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References
Related Ubuntu Security Notices (USN)
- USN-3660-1
- Thunderbird vulnerabilities
- 25 May 2018