An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash. *This bug only affects Firefox and Thunderbird for macOS. Other operating systems are unaffected.* This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.
2023-06-19T10:15:09.373
2024-12-11T16:15:08.690
Modified
CVSSv3.1: 9.8 (CRITICAL)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | mozilla | firefox | < 112.0 | Yes |
| Application | mozilla | firefox_esr | < 102.10 | Yes |
| Application | mozilla | thunderbird | < 102.10 | Yes |
| Operating System | apple | macos | - | No |