First published: Tue Mar 19 2024(Updated: )
Data was not properly sanitized when decoding a QUIC ACK frame; this could have led to unrestricted memory consumption and a crash.
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | <124.0 | |
Firefox | <124 | 124 |
debian/firefox | 135.0.1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2024-2613 is considered a moderate severity vulnerability due to its potential to cause memory consumption and crashes.
To mitigate CVE-2024-2613, update Firefox to version 124 or later.
Firefox versions prior to 124 are affected by CVE-2024-2613.
Yes, CVE-2024-2613 could be exploited remotely through crafted QUIC ACK frames.
The impacts of CVE-2024-2613 include unrestricted memory consumption leading to application crashes.