Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-9936

Опубликовано: 14 окт. 2024
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

When manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitable crash. This vulnerability affects Firefox < 131.0.3.

A flaw was found in Firefox. When manipulating the selection node cache, an attacker may be able to cause unexpected behavior, leading to an exploitable crash.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6firefoxOut of support scope
Red Hat Enterprise Linux 7firefoxNot affected
Red Hat Enterprise Linux 8firefoxNot affected
Red Hat Enterprise Linux 9firefoxNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-754
https://bugzilla.redhat.com/show_bug.cgi?id=2318538firefox: Undefined behavior in selection node cache

EPSS

Процентиль: 31%
0.00114
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 года назад

When manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitable crash. This vulnerability affects Firefox < 131.0.3.

CVSS3: 6.5
nvd
около 1 года назад

When manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitable crash. This vulnerability affects Firefox < 131.0.3.

CVSS3: 6.5
debian
около 1 года назад

When manipulating the selection node cache, an attacker may have been ...

CVSS3: 6.5
github
около 1 года назад

When manipulating the selection node cache, an attacker may have been able to cause unexpected behavior, potentially leading to an exploitable crash. This vulnerability affects Firefox < 131.0.3.

CVSS3: 7.5
fstec
около 1 года назад

Уязвимость компонента Selection Node Cache браузера Mozilla Firefox, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 31%
0.00114
Низкий

7.5 High

CVSS3

Уязвимость CVE-2024-9936