Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2024-14978
HistoryMar 21, 2024 - 12:00 a.m.

Code execution vulnerability in multiple Mozilla products (CNVD-2024-14978)

2024-03-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
5
mozilla
code execution
vulnerability
web browser
email client
arbitrary code
denial of service
armv7-a

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.5%

Mozilla Firefox is an open source web browser.Mozilla Firefox ESR is an extended support version of Firefox (the web browser).Mozilla Thunderbird is a suite of email client software separate from the Mozilla Application Suite. A code execution vulnerability exists in several Mozilla products that stems from JIT code that fails to save the return register on Armv7-A. An attacker could exploit this vulnerability to execute arbitrary code on a system or cause a denial of service.