REDHAT-BUG-2362915: High severity firefox esr vulnerability
Memory safety bug present in Firefox ESR 128.9, and Thunderbird 128.9. This bug showed evidence of memory corruption and we presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 128.10 and Thunderbird ESR < 128.10.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2362915?
The severity of REDHAT-BUG-2362915 is considered high due to evidence of memory corruption that could potentially allow for arbitrary code execution.
How do I fix REDHAT-BUG-2362915?
To fix REDHAT-BUG-2362915, update to Firefox ESR 128.10 and Thunderbird ESR 128.10 or later.
What versions of Firefox and Thunderbird are affected by REDHAT-BUG-2362915?
Firefox ESR versions lower than 128.10 and Thunderbird ESR versions lower than 128.10 are affected by REDHAT-BUG-2362915.
Is there a workaround for REDHAT-BUG-2362915?
There are no recommended workarounds for REDHAT-BUG-2362915; the best action is to apply the update.
Can REDHAT-BUG-2362915 be exploited?
While exploitation of REDHAT-BUG-2362915 is not confirmed, the evidence of memory corruption suggests that it could potentially be exploited with sufficient effort.