Описание
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1, Thunderbird < 128.3.1, and Thunderbird < 115.16.0.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | code not present |
esm-infra/focal | DNE | |
focal | released | 131.0.2+build1-0ubuntu0.20.04.1 |
jammy | not-affected | code not present |
noble | not-affected | code not present |
oracular | not-affected | code not present |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/noble | ignored | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | ignored | |
noble | ignored | |
oracular | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | ignored | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE | |
noble | ignored | |
oracular | ignored | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/bionic | ignored | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | DNE | |
noble | DNE | |
oracular | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/focal | ignored | |
esm-infra/bionic | ignored | |
focal | ignored | |
jammy | DNE | |
noble | DNE | |
oracular | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra/focal | ignored | |
focal | ignored | |
jammy | DNE | |
noble | DNE | |
oracular | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/jammy | ignored | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | ignored | |
noble | DNE | |
oracular | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
jammy | ignored | |
noble | DNE | |
oracular | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | code not present |
esm-infra/focal | DNE | |
focal | released | 1:115.16.0+build2-0ubuntu0.20.04.1 |
jammy | released | 1:115.16.0+build2-0ubuntu0.22.04.1 |
noble | not-affected | code not present |
oracular | not-affected | code not present |
upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
9.8 Critical
CVSS3
Связанные уязвимости
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1, Thunderbird < 128.3.1, and Thunderbird < 115.16.0.
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1, Thunderbird < 128.3.1, and Thunderbird < 115.16.0.
An attacker was able to achieve code execution in the content process ...
EPSS
9.8 Critical
CVSS3