PT-2022-5649 · Mozilla+1 · Firefox For Android+1

Published

2022-09-20

·

Updated

2024-12-12

·

CVE-2022-40961

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Firefox for Android versions prior to 105
Description A graphics driver with an unexpected name could lead to a stack-buffer overflow, causing a potentially exploitable crash. This issue only affects Firefox for Android, and other operating systems are not affected.
Recommendations For versions prior to 105, update to version 105 or later to resolve the issue. As a temporary workaround, consider restricting the use of graphics drivers with unexpected names until a patch is available.

Fix

Memory Corruption

Stack Overflow

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-2653
ALT-PU-2022-2930
ALT-PU-2023-1139
ALT-PU-2023-4339
ALT-PU-2023-5754
ALT-PU-2023-6436
BDU:2022-07017
CVE-2022-40961
OPENSUSE-SU-2024:12398-1
OPENSUSE-SU-2024:14572-1

Affected Products

Alt Linux
Firefox For Android