Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f5q8-q9fw-rc2j

Опубликовано: 02 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Mozilla developers Timothy Nikkel, Gabriele Svelto, Jeff Muizelaar and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 110.

Mozilla developers Timothy Nikkel, Gabriele Svelto, Jeff Muizelaar and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 110.

EPSS

Процентиль: 48%
0.00251
Низкий

8.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 2 лет назад

Memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 110.

CVSS3: 7.5
redhat
почти 3 года назад

Memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 110.

CVSS3: 8.8
nvd
больше 2 лет назад

Memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 110.

CVSS3: 8.8
debian
больше 2 лет назад

Memory safety bugs present in Firefox 109. Some of these bugs showed e ...

CVSS3: 8.8
fstec
около 3 лет назад

Уязвимость веб-браузера Firefox, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

EPSS

Процентиль: 48%
0.00251
Низкий

8.8 High

CVSS3

Дефекты

CWE-787