CVE-2024-10468: Race Condition
Published Oct 29, 2024
·Updated
Last updated 6 November 2024
Other sources
Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash.
— Mozilla
Affected Software
5 affected componentsFixes available
debian/firefox
132.0.1-1
Mozilla Thunderbird<132
132
Mozilla Firefox<132.0
Mozilla Thunderbird<132.0
Mozilla Firefox<132
132
Event History
Oct 29, 2024
CVE Published
via Mozilla·12:00 AM
CVE Published
via MITRE·12:19 PM
Data Sourced
via MITRE·12:19 PM
DescriptionWeakness
Nov 8, 2024
Data Sourced
via Ubuntu·12:21 PM
RemedyDescriptionSeverityAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2024-10468?
CVE-2024-10468 has a medium severity due to potential memory corruption leading to crashes.
2
How do I fix CVE-2024-10468?
To fix CVE-2024-10468, update Mozilla Thunderbird or Firefox to version 132.0.1 or later.
3
What are the affected software versions for CVE-2024-10468?
CVE-2024-10468 affects Mozilla Thunderbird and Firefox versions prior to 132.0.1.
4
What type of vulnerability is CVE-2024-10468?
CVE-2024-10468 is a potential race condition vulnerability in IndexedDB.
5
Can CVE-2024-10468 lead to exploitation?
Yes, CVE-2024-10468 can potentially lead to exploitation through memory corruption.