First published: Tue May 31 2022(Updated: )
On arm64, WASM code could have resulted in incorrect assembly generation leading to a register allocation problem, and a potentially exploitable crash.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thunderbird | <91.10 | 91.10 |
Firefox | <101.0 | |
Firefox ESR | <91.10 | |
Thunderbird | <91.10 | |
Firefox | <101 | 101 |
Firefox ESR | <91.10 | 91.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-31740 has a moderate severity rating as it could lead to a crash and potential exploitation.
To fix CVE-2022-31740, update affected software such as Mozilla Firefox, Firefox ESR, or Thunderbird to their latest versions.
CVE-2022-31740 affects arm64 systems running specific versions of Mozilla Firefox, Firefox ESR, and Thunderbird.
CVE-2022-31740 does not explicitly mention remote code execution, but it could result in crashes that may be exploitable.
Yes, CVE-2022-31740 affects Mozilla Firefox versions prior to 101 and Firefox ESR versions prior to 91.10.