Lucene search

K
kasperskyKaspersky LabKLA65257
HistoryMar 22, 2024 - 12:00 a.m.

KLA65257 ACE vulnerability in Mozilla Firefox ESR

2024-03-2200:00:00
Kaspersky Lab
threats.kaspersky.com
11
critical
ace vulnerability
mozilla firefox esr
update
remote code execution
cve-2024-29944
mfsa2024-16

7.6 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

15.5%

Remote code execution vulnerability was found in Mozilla Firefox ESR. Malicious users can exploit this vulnerability to execute arbitrary code.

Original advisories

MFSA2024-16

Related products

Mozilla-Firefox-ESR

CVE list

CVE-2024-29944 warning

Solution

Update to the latest version

Download Firefox ESR

Impacts

  • ACE

Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.

  • SB

Security bypass. Exploitation of vulnerabilities with this impact can lead to performing actions restricted by current security settings.

Affected Products

  • Mozilla FirefoxΒ ESR earlier thanΒ 115.9.1