CVE-2024-9402: Buffer Overflow
Last updated 7 October 2024
Other sources
Memory safety bugs present in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.
— Launchpad
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-9402?
CVE-2024-9402 is classified as a memory safety vulnerability that could potentially lead to arbitrary code execution.
How do I fix CVE-2024-9402?
To fix CVE-2024-9402, update affected software to Firefox ESR version 128.3, Firefox version 131, or Thunderbird version 131.
Which versions of Firefox are affected by CVE-2024-9402?
CVE-2024-9402 affects Firefox versions up to 130 and Firefox ESR versions up to 128.2.
Which versions of Thunderbird are affected by CVE-2024-9402?
CVE-2024-9402 impacts Thunderbird versions up to 128.2.
Is arbitrary code execution possible with CVE-2024-9402?
Yes, CVE-2024-9402 demonstrates evidence of memory corruption that can be exploited for arbitrary code execution.