Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-37201

Опубликовано: 05 июл. 2023
Источник: debian
EPSS Низкий

Описание

An attacker could have triggered a use-after-free condition when creating a WebRTC connection over HTTPS. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed115.0-1package
firefox-esrfixed102.13.0esr-1package
thunderbirdfixed1:102.13.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2023-22/#CVE-2023-37201

  • https://www.mozilla.org/en-US/security/advisories/mfsa2023-23/#CVE-2023-37201

  • https://www.mozilla.org/en-US/security/advisories/mfsa2023-24/#CVE-2023-37201

EPSS

Процентиль: 65%
0.005
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 2 лет назад

An attacker could have triggered a use-after-free condition when creating a WebRTC connection over HTTPS. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.

CVSS3: 8.8
redhat
около 2 лет назад

An attacker could have triggered a use-after-free condition when creating a WebRTC connection over HTTPS. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.

CVSS3: 8.8
nvd
около 2 лет назад

An attacker could have triggered a use-after-free condition when creating a WebRTC connection over HTTPS. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.

CVSS3: 8.8
github
около 2 лет назад

An attacker could have triggered a use-after-free condition when creating a WebRTC connection over HTTPS. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.

CVSS3: 8.8
fstec
около 2 лет назад

Уязвимость технологии WebRTC браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

EPSS

Процентиль: 65%
0.005
Низкий