REDHAT-BUG-2428963: High severity Mozilla Firefox vulnerability
Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147 and Firefox ESR < 140.7.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2428963?
The severity of REDHAT-BUG-2428963 is high due to the potential for memory corruption leading to arbitrary code execution.
How do I fix REDHAT-BUG-2428963?
To fix REDHAT-BUG-2428963, upgrade to the latest versions of Firefox (147 and above) or Thunderbird (147 and above) as well as their ESR versions (140.7 and above).
Which versions are affected by REDHAT-BUG-2428963?
REDHAT-BUG-2428963 affects Firefox versions up to 146, Firefox ESR versions up to 140.6, Thunderbird versions up to 146, and Thunderbird ESR versions up to 140.6.
What kind of vulnerabilities does REDHAT-BUG-2428963 include?
REDHAT-BUG-2428963 includes memory safety bugs that can potentially lead to memory corruption.
Can REDHAT-BUG-2428963 be exploited?
Yes, with sufficient effort, the vulnerabilities in REDHAT-BUG-2428963 could potentially be exploited to execute arbitrary code.