CVE-2024-7526

CVSS v3.1 6.5 (Medium)
65% Progress
EPSS 0.07 % (31th)
0.07% Progress
Affected Products 3
Advisories 26
NVD Status Analyzed

ANGLE failed to initialize parameters which led to reading from uninitialized memory. This could be leveraged to leak sensitive data from memory. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.

Weaknesses
CWE-908
Use of Uninitialized Resource
CVE Status
PUBLISHED
NVD Status
Analyzed
CNA
Mozilla Corporation
Published Date
2024-08-06 13:15:57
(5 weeks ago)
Updated Date
2024-08-12 16:07:50
(5 weeks ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 129.0 version cpe:2.3:a:mozilla:firefox < 129.0
  Mozilla Firefox Esr prior 115.14.0 version cpe:2.3:a:mozilla:firefox_esr < 115.14.0
  Mozilla Firefox Esr 128.0 cpe:2.3:a:mozilla:firefox_esr:128.0
  Mozilla Thunderbird prior 115.14.0 version cpe:2.3:a:mozilla:thunderbird < 115.14.0
  Mozilla Thunderbird 128.0.1 cpe:2.3:a:mozilla:thunderbird:128.0.1
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...