First published: Tue Jan 11 2022(Updated: )
When inserting text while in edit mode, some characters might have lead to out-of-bounds memory access causing a potentially exploitable crash.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox ESR | <91.5 | 91.5 |
<96 | 96 | |
<91.5 | 91.5 | |
<91.5 | 91.5 | |
Mozilla Firefox | <96.0 | |
Mozilla Firefox ESR | <91.5 | |
Mozilla Thunderbird | <91.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-22742 is classified as a potentially exploitable security vulnerability due to out-of-bounds memory access.
To fix CVE-2022-22742, users should update to versions of Firefox and Thunderbird later than those listed as affected.
CVE-2022-22742 affects Mozilla Firefox ESR versions prior to 91.5, Firefox versions prior to 96, and Thunderbird versions prior to 91.5.
CVE-2022-22742 is an out-of-bounds memory access vulnerability that can lead to application crashes.
The exploitation potential of CVE-2022-22742 could lead to crashes but may also allow for remote code execution under certain conditions.