Lucene search

K
cvelistMozillaCVELIST:CVE-2023-29531
HistoryJun 19, 2023 - 9:48 a.m.

CVE-2023-29531

2023-06-1909:48:59
mozilla
www.cve.org
1
webgl
firefox
thunderbird
memory corruption
macos
cve-2023-29531

9.3 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

57.5%

An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash.

This bug only affects Firefox andΒ Thunderbird for macOS. Other operating systems are unaffected. This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Firefox",
    "vendor": "Mozilla",
    "versions": [
      {
        "lessThan": "112",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Firefox ESR",
    "vendor": "Mozilla",
    "versions": [
      {
        "lessThan": "102.10",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "product": "Thunderbird",
    "vendor": "Mozilla",
    "versions": [
      {
        "lessThan": "102.10",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

9.3 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

57.5%