First published: Tue Apr 11 2023(Updated: )
If multiple instances of resource exhaustion occurred at the incorrect time, the garbage collector could have caused memory corruption and a potentially exploitable crash. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <112 | 112 |
All of | ||
Mozilla Firefox | =112 | |
Google Android | ||
All of | ||
Mozilla Focus | =112 | |
Google Android | ||
Mozilla Firefox | <112.0 | |
Mozilla Firefox | <112.0 | |
Mozilla Focus | <112.0 | |
ubuntu/firefox | <112.0+ | 112.0+ |
ubuntu/firefox | <112.0+ | 112.0+ |
ubuntu/firefox | <112.0-1 | 112.0-1 |
debian/firefox | 128.0.3-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID of this vulnerability is CVE-2023-29544.
The severity level of CVE-2023-29544 is medium.
Firefox for Android versions less than 112 and Firefox versions less than 112 are affected by CVE-2023-29544.
To fix CVE-2023-29544, update Firefox for Android and Firefox to version 112 or higher.
You can find more information about CVE-2023-29544 at the following references: [Mozilla Security Advisories](https://www.mozilla.org/security/advisories/mfsa2023-13/), [Bugzilla](https://bugzilla.mozilla.org/show_bug.cgi?id=1818781), and [Launchpad](https://launchpad.net/bugs/cve/CVE-2023-29544).