PT-2023-2865 · Mozilla+4 · Firefox+4

Sam Ezeh

·

Publicado

2023-05-09

·

Atualizado

2025-03-14

·

CVE-2023-32209

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 113 Firefox ESR (affected versions not specified)
Description The issue is related to an uncontrolled consumption of resources, potentially leading to a denial of service. A maliciously crafted favicon could cause an out of memory crash. The estimated number of potentially affected devices worldwide is not available. There is no information about real-world incidents where this issue was exploited.
Recommendations For Firefox versions prior to 113, update to version 113 or later to resolve the issue. For Firefox ESR, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Memory Corruption

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2023-1773
ALT-PU-2023-5754
ALT-PU-2023-6436
ALT-PU-2024-14035
ALT-PU-2024-3614
ALT-PU-2024-4241
BDU:2023-02812
CVE-2023-32209
OESA-2025-1265
OESA-2025-1268
OPENSUSE-SU-2024:12920-1
OPENSUSE-SU-2024:14572-1
USN-6074-1
USN-6074-2
USN-6074-3

Produtos afetados

Alt Linux
Astra Linux
Firefox
Linuxmint
Ubuntu