First published: Tue Oct 18 2022(Updated: )
Mozilla developers Timothy Nikkel, Ashley Hale, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 105. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <106 | 106 |
<106 | 106 | |
Mozilla Firefox | <106.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2022-46885.
The severity of CVE-2022-46885 is high with a CVSS score of 8.8.
Mozilla Firefox versions up to version 106.0 are affected by CVE-2022-46885.
Yes, you can find references for CVE-2022-46885 at the following links: {link1}, {link2}, {link3}.
CVE-2022-46885 could be exploited to run arbitrary code through memory corruption.