CVE-2023-29551High· 8.8▾ TwilightMemory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox f…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 48.4 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 19.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.5%
Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.
firefox < 112.0firefox_mobile < 112.0focus < 112.0Upgrade past the affected range:
firefox 112.0firefox_mobile 112.0focus 112.0Connected by shared product, vendor, weakness, or advisory.
CVE-2023-29550High· 8.8Memory safety bugs present in Firefox 111 and Firefox ESR 102.9
CVE-2023-29549Medium· 6.5Under certain circumstances, a call to the <code>bind</code> function may have resulted in the incorrect realm
CVE-2023-29548Medium· 6.5A wrong lowering instruction in the ARM64 Ion compiler resulted in a wrong optimization result
CVE-2023-29544Medium· 6.5If multiple instances of resource exhaustion occurred at the incorrect time, the garbage collector could have caused memory corruption and a potentially exploitable crash
CVE-2023-29543High· 8.8An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global object's debugger vector
CVE-2023-29541High· 8.8Firefox did not properly handle downloads of files ending in <code>.desktop</code>, which can be interpreted to run attacker-controlled commands