First published: Tue Dec 19 2023(Updated: )
Last updated 24 July 2024
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/firefox | <115.6 | 115.6 |
redhat/thunderbird | <115.6 | 115.6 |
debian/firefox | 135.0.1-1 | |
debian/firefox-esr | 115.14.0esr-1~deb11u1 128.7.0esr-1~deb11u1 128.5.0esr-1~deb12u1 128.7.0esr-1~deb12u1 128.7.0esr-1 | |
Thunderbird | <115.6 | 115.6 |
Firefox | <121.0 | |
Firefox ESR | <115.6 | |
Thunderbird | <115.6 | |
Debian | =10.0 | |
Debian | =11.0 | |
Debian | =12.0 | |
Firefox | <121 | 121 |
Firefox ESR | <115.6 | 115.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-6863 is considered a moderate severity vulnerability due to its potential to cause undefined behavior.
To fix CVE-2023-6863, users should update to Firefox ESR version 115.6 or later, Thunderbird version 115.6 or later, or apply the appropriate package updates for Debian systems.
CVE-2023-6863 affects Mozilla Firefox ESR versions prior to 115.6, Thunderbird versions prior to 115.6, and specific versions of the Firefox and Thunderbird packages on Debian.
As of now, there is no public information indicating that CVE-2023-6863 is actively being exploited in the wild.
The potential impacts of CVE-2023-6863 include application crashes and unstable behavior due to undefined behavior in the affected software.