CVE-2024-7528: Use After Free
Incorrect garbage collection interaction in IndexedDB could have led to a use-after-free.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-7528?
CVE-2024-7528 is classified as a use-after-free vulnerability, which can potentially lead to arbitrary code execution.
How do I fix CVE-2024-7528?
To fix CVE-2024-7528, update Firefox to version 129 or newer, or Firefox ESR and Thunderbird to version 128.1 or newer.
Which versions of Firefox are affected by CVE-2024-7528?
Firefox versions prior to 129, Firefox ESR versions prior to 128.1, and Thunderbird versions prior to 128.1 are affected by CVE-2024-7528.
What platforms are impacted by CVE-2024-7528?
CVE-2024-7528 affects Mozilla Firefox on all platforms where the affected versions are installed.
Is there a patch available for CVE-2024-7528?
Yes, patches for CVE-2024-7528 have been released in the latest versions of Firefox, Firefox ESR, and Thunderbird.