Type Confusion Vulnerability in Firefox Could Lead to Memory Corruption and Crash

CVE-2024-7652
Currently unrated 🤨

Key Information

Vendor
Mozilla
Vendor
CVE Published:
6 September 2024

Summary

An error in the ECMA-262 specification relating to Async Generators could have resulted in a type confusion, potentially leading to memory corruption and an exploitable crash. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.

Timeline

  • Vulnerability published.

Collectors

NVD Database
.