CVE-2018-5095: Mozilla: Integer overflow in Skia library during edge builder allocation (MFSA 2018-03)

Severity: Critical

CVSS Score: 9.8

An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 8 GB of RAM. This results in the use of uninitialized memory, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.