View at Official ubuntu advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2017-7771 medium priority: Ubuntu including 3 source packages (firefox, graphite2, thunderbird), 15 status rows across 5 suites (trusty, upstream, xenial, yakkety, zesty): released 14, ignored 1.
Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Pass::readPass function.