CVE-2024-9395: Medium severity firefox vulnerability
A specially crafted filename containing a large number of spaces could obscure the file's extension when displayed in the download dialog. This bug only affects Firefox for Android. Other versions of Firefox are unaffected. This vulnerability affects Firefox < 131.
Other sources
A specially crafted filename containing a large number of spaces could obscure the file's extension when displayed in the download dialog.This bug only affects Firefox for Android. Other versions of Firefox are unaffected.
— Mozilla
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-9395?
CVE-2024-9395 is categorized as a moderate severity vulnerability.
How do I fix CVE-2024-9395?
To fix CVE-2024-9395, update your Firefox for Android to version 131 or later.
Who is affected by CVE-2024-9395?
CVE-2024-9395 affects users of Firefox for Android versions below 131.
What does CVE-2024-9395 exploit?
CVE-2024-9395 exploits the display of filenames with excessive spaces, potentially obscuring file extensions.
Is CVE-2024-9395 affecting other versions of Firefox?
No, CVE-2024-9395 only affects Firefox for Android; other versions of Firefox are not impacted.