Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-0752

Опубликовано: 23 янв. 2024
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122.

A use-after-free crash can occur on a macOS if a Firefox update is applied on a busy system. This flaw can result in an exploitable crash.

Отчет

This vulnerability only affects Non ESR versions of Firefox and we don't ship Non ESR.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6firefoxNot affected
Red Hat Enterprise Linux 7firefoxNot affected
Red Hat Enterprise Linux 8firefoxNot affected
Red Hat Enterprise Linux 8firefox:flatpak/firefoxNot affected
Red Hat Enterprise Linux 9firefoxNot affected
Red Hat Enterprise Linux 9firefox:flatpak/firefoxNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2260019firefox: use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system

EPSS

Процентиль: 31%
0.00121
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 2 лет назад

A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122.

CVSS3: 6.5
nvd
около 2 лет назад

A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122.

msrc
5 месяцев назад

A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122.

CVSS3: 6.5
debian
около 2 лет назад

A use-after-free crash could have occurred on macOS if a Firefox updat ...

CVSS3: 6.5
github
около 2 лет назад

A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122.

EPSS

Процентиль: 31%
0.00121
Низкий

6.5 Medium

CVSS3