CVE-2022-42932: High severity thunderbird vulnerability
Mozilla developers Ashley Hale and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 105 and Firefox ESR 102.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Other sources
Mozilla developers Ashley Hale and the Mozilla Fuzzing Team reported memory safety bugs present in Thunderbird 102.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2022-42932?
The severity of CVE-2022-42932 is high.
Which software versions are affected by CVE-2022-42932?
Mozilla Firefox 105 and Firefox ESR 102.3 are affected by CVE-2022-42932.
Are there any known exploits for CVE-2022-42932?
There are no known exploits for CVE-2022-42932 at the moment.
How can I fix CVE-2022-42932?
To fix CVE-2022-42932, update to Mozilla Firefox version 106 or Firefox ESR version 102.4.
Where can I find more information about CVE-2022-42932?
You can find more information about CVE-2022-42932 on the Mozilla website.