First published: Tue Mar 04 2025(Updated: )
On 64-bit CPUs, when the JIT compiles WASM i32 return values they can pick up bits from left over memory. This can potentially cause them to be treated as a different type. This vulnerability affects Firefox < 136, Firefox ESR < 115.21, and Firefox ESR < 128.8.
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | <136 | |
Firefox ESR | <115.21<128.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2349794 is considered critical due to the potential type confusion from leftover memory bits.
To fix REDHAT-BUG-2349794, update to Firefox version 136 or later, or Firefox ESR version 115.21 or later, and version 128.8 or later.
Firefox versions below 136 and Firefox ESR versions below 115.21 and 128.8 are affected by REDHAT-BUG-2349794.
Yes, REDHAT-BUG-2349794 can potentially allow an attacker to manipulate data types, leading to exploitation in vulnerable browsers.
REDHAT-BUG-2349794 impacts 64-bit CPU systems running the affected versions of Firefox.