Mozilla Warns of Vulnerability in Firefox and Thunderbird
CVE-2024-9392
Currently unrated 🤨
Summary
A compromised content process could have allowed for the arbitrary loading of cross-origin pages. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Firefox ESR < 115.16, Thunderbird < 128.3, and Thunderbird < 131.
Affected Version(s)
Firefox < 131
Firefox ESR < 128.3
Firefox ESR < 115.16
Refferences
https://bugzilla.mozilla.org/show_bug.cgi?id=1899154
https://bugzilla.mozilla.org/show_bug.cgi?id=1905843
https://www.mozilla.org/security/advisories/mfsa2024-46/
https://www.mozilla.org/security/advisories/mfsa2024-47/
https://www.mozilla.org/security/advisories/mfsa2024-48/
https://www.mozilla.org/security/advisories/mfsa2024-49/
https://www.mozilla.org/security/advisories/mfsa2024-50/
Timeline
Vulnerability Reserved
Vulnerability published
Collectors
NVD DatabaseMitre Database
Credit
Jan Drescher and David Klein from IAS, TU Braunschweig