CVE-2024-3859
CVSS v3.1
5.9 (Medium)
EPSS
0.04 % (11th)
Advisories
31
NVD Status
Awaiting Analysis
On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
- CVE Status
- PUBLISHED
- NVD Status
- Awaiting Analysis
- CNA
- Mozilla Corporation
- Published Date
-
2024-04-16 16:15:08
(5 months ago) - Updated Date
-
2024-07-03 02:06:47
(2 months ago)
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...