Mozilla Orlando Memory Corruption Vulnerability

CVE-2024-9400
Currently unrated 🤨

Key Information

Vendor
Mozilla
Status
Firefox
Firefox Esr
Thunderbird
Vendor
CVE Published:
1 October 2024

Summary

A potential memory corruption vulnerability could be triggered if an attacker had the ability to trigger an OOM at a specific moment during JIT compilation. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Thunderbird < 128.3, and Thunderbird < 131.

Affected Version(s)

Firefox < 131

Firefox ESR < 128.3

Thunderbird < 128.3

Timeline

  • Vulnerability Reserved.

  • Vulnerability published.

Collectors

NVD DatabaseMitre Database

Credit

Gary Kwong
.