In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
Metrics
Affected Vendors & Products
References
History
Fri, 04 Apr 2025 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Mozilla
Mozilla firefox Mozilla thunderbird |
|
CPEs | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:* cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Mozilla
Mozilla firefox Mozilla thunderbird |

Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-09-12T15:48:02.807Z
Reserved: 2024-07-09T14:12:56.417Z
Link: CVE-2024-6603

Updated: 2024-08-01T21:41:04.040Z

Status : Analyzed
Published: 2024-07-09T15:15:12.533
Modified: 2025-04-04T14:43:16.317
Link: CVE-2024-6603
