First published: Fri Sep 06 2024(Updated: )
An error in the ECMA-262 specification relating to Async Generators could have resulted in a type confusion, potentially leading to memory corruption and an exploitable crash. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | <128 | |
Firefox ESR | <115.13 | |
Thunderbird | <115.13<128 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2310490 is considered critical due to the potential for memory corruption and system crashes.
To fix REDHAT-BUG-2310490, users should update their affected software to the latest versions of Firefox, Firefox ESR, or Thunderbird.
REDHAT-BUG-2310490 affects Firefox versions prior to 128, Firefox ESR prior to 115.13, and Thunderbird versions prior to 115.13 and 128.
Yes, REDHAT-BUG-2310490 could potentially be exploited remotely through malicious web content.
REDHAT-BUG-2310490 is a type confusion vulnerability related to Async Generators in the ECMA-262 specification.