CVE-2023-5168
CVSS v3.1
9.8 (Critical)
EPSS
0.08 % (34th)
Affected Products
4
Advisories
10
A compromised content process could have provided malicious data to FilterNodeD2D1
resulting in an out-of-bounds write, leading to a potentially exploitable crash in a privileged process.
This bug only affects Firefox on Windows. Other operating systems are unaffected. This vulnerability affects Firefox < 118, Firefox ESR < 115.3, and Thunderbird < 115.3.
Weaknesses
- CWE-787
- Out-of-bounds Write
- CVE Status
- PUBLISHED
- CNA
- Mozilla Corporation
- Published Date
-
2023-09-27 15:19:42
(11 months ago) - Updated Date
-
2023-10-10 15:15:10
(11 months ago)
Affected Products
Loading...
Loading...
Configuration #1
AND |
|
---|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...