First published: Tue Feb 08 2022(Updated: )
Mozilla developers and community members Gabriele Svelto, Sebastian Hengst, Randell Jesup, Luan Herrera, Lars T Hansen, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 96. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <97 | 97 |
<97 | 97 | |
Mozilla Firefox | <97.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-0511 is classified as a high severity vulnerability due to the potential for memory corruption.
To resolve CVE-2022-0511, update Mozilla Firefox to version 97 or later.
CVE-2022-0511 affects all versions of Mozilla Firefox prior to 97.
Yes, CVE-2022-0511 may be exploited remotely, potentially allowing an attacker to execute arbitrary code.
If you cannot update to version 97, consider using alternative browsers until you can apply the necessary update.