CVE-2024-4778: Critical severity Mozilla Firefox vulnerability
Last updated 24 July 2024
Other sources
Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/firefoxto a version that resolves this vulnerability.Fixed in 130.0.1-1 - Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 126 - Upgrade
Upgrade
Mozilla Firefoxto a version that resolves this vulnerability.Fixed in 126
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-4778?
CVE-2024-4778 is classified as a high severity vulnerability due to its potential for memory corruption and arbitrary code execution.
How do I fix CVE-2024-4778?
To fix CVE-2024-4778, update your Firefox browser to version 126 or later.
Which versions of Firefox are affected by CVE-2024-4778?
CVE-2024-4778 affects Firefox versions up to 125.
Is CVE-2024-4778 present in Debian's Firefox package?
Yes, CVE-2024-4778 is present in Debian's Firefox package versions before 130.0.1-1.
What types of vulnerabilities are associated with CVE-2024-4778?
CVE-2024-4778 is associated with memory safety bugs that can lead to memory corruption.