CVE-2024-6603

In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
Configurations

No configuration.

History

16 Jul 2024, 18:15

Type Values Removed Values Added
References
  • () https://www.mozilla.org/security/advisories/mfsa2024-31/ -
  • () https://www.mozilla.org/security/advisories/mfsa2024-32/ -
Summary (en) In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128 and Firefox ESR < 115.13. (en) In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.

12 Jul 2024, 16:12

Type Values Removed Values Added
Summary
  • (es) En un escenario de falta de memoria, una asignación podría fallar, pero luego se habría llamado a free en el puntero, lo que provocaría daños en la memoria. Esta vulnerabilidad afecta a Firefox &lt; 128 y Firefox ESR &lt; 115.13.
CWE CWE-823
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.4

09 Jul 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-09 15:15

Updated : 2024-07-16 18:15


NVD link : CVE-2024-6603

Mitre link : CVE-2024-6603

CVE.ORG link : CVE-2024-6603


JSON object : View

Products Affected

No product.

CWE
CWE-823

Use of Out-of-range Pointer Offset