CVE-2024-8387: Buffer Overflow
Last updated 11 September 2024
Other sources
Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-8387?
CVE-2024-8387 is categorized as a high severity vulnerability due to potential memory corruption leading to arbitrary code execution.
How do I fix CVE-2024-8387?
To mitigate CVE-2024-8387, update Firefox to version 130, Firefox ESR to version 128.2, or Thunderbird to version 128.2.
Which software versions are affected by CVE-2024-8387?
CVE-2024-8387 affects Firefox versions 129.0, Firefox ESR 128.1, and Thunderbird 128.1.
Is CVE-2024-8387 exploitable?
CVE-2024-8387 shows evidence of memory corruption which suggests it could potentially be exploited with sufficient effort.
Who is the vendor for CVE-2024-8387?
The vendor for CVE-2024-8387 is Mozilla, responsible for Firefox and Thunderbird products.