CVE-2023-5172

CVSS v3.1 9.8 (Critical)
98% Progress
EPSS 0.08 % (35th)
0.08% Progress
Affected Products 1
Advisories 3

A hashtable in the Ion Engine could have been mutated while there was a live interior reference, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 118.

Weaknesses
CWE-416
Use After Free
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2023-09-27 15:19:42
(11 months ago)
Updated Date
2024-01-07 11:15:13
(8 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 118 version cpe:2.3:a:mozilla:firefox < 118
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...