First published: Tue May 31 2022(Updated: )
A crafted CMS message could have been processed incorrectly, leading to an invalid memory read, and potentially further memory corruption.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thunderbird | <91.10 | 91.10 |
Firefox | <101 | |
Firefox ESR | <91.10 | |
Thunderbird | <91.10 | |
Firefox | <101 | 101 |
Firefox ESR | <91.10 | 91.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-31741 has a severity rating that indicates a potential for memory corruption due to improper processing of crafted CMS messages.
To fix CVE-2022-31741, update Mozilla Firefox, Firefox ESR, or Thunderbird to the latest version beyond the affected versions.
CVE-2022-31741 affects Mozilla Firefox versions prior to 101, Firefox ESR versions prior to 91.10, and Thunderbird versions prior to 91.10.
Exploitation of CVE-2022-31741 could lead to invalid memory reads and further memory corruption.
CVE-2022-31741 is not tied to a specific operating system; it affects the mentioned versions of Mozilla applications across supported platforms.