CVE-2024-7519
CVSS 3.1 Score 9.6 of 10 (high)
Details
Published Aug 6, 2024
Updated: Aug 12, 2024
CWE ID 787
Summary
CVE-2024-7519 is a memory corruption vulnerability affecting Firefox versions below 129, Firefox ESR below 115.14, Firefox ESR below 128.1, Thunderbird below 128.1, and Thunderbird below 115.14. The flaw arises due to insufficient checks during the processing of graphics shared memory. An attacker could exploit this issue to execute arbitrary code, leading to a sandbox escape. This vulnerability poses a significant threat to users of the affected software versions. Updating to the latest versions is strongly recommended to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Mozilla Thunderbird
- Mozilla Firefox
- Mozilla Firefox ESR
Affected Vendors
- Mozilla