Memory safety bugs present in Firefox 130. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 131 and Thunderbird < 131.
References
Link | Resource |
---|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=1917807 | Issue Tracking |
https://www.mozilla.org/security/advisories/mfsa2024-46/ | Vendor Advisory |
https://www.mozilla.org/security/advisories/mfsa2024-50/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
31 Mar 2025, 17:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugzilla.mozilla.org/show_bug.cgi?id=1917807 - Issue Tracking | |
References | () https://www.mozilla.org/security/advisories/mfsa2024-46/ - Vendor Advisory | |
References | () https://www.mozilla.org/security/advisories/mfsa2024-50/ - Vendor Advisory | |
CPE | cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* |
|
First Time |
Mozilla
Mozilla thunderbird Mozilla firefox |
19 Mar 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-119 |
04 Oct 2024, 13:51
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
01 Oct 2024, 19:35
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.3 |
01 Oct 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-01 16:15
Updated : 2025-03-31 17:45
NVD link : CVE-2024-9403
Mitre link : CVE-2024-9403
CVE.ORG link : CVE-2024-9403
JSON object : View
Products Affected
mozilla
- firefox
- thunderbird
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer