PT-2023-6528 · Mozilla+5 · Firefox+5

Stefan Arentz

+1

·

Published

2023-10-24

·

Updated

2025-03-14

·

CVE-2023-5731

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 119
Description The issue is related to memory safety bugs in Firefox, which can lead to memory corruption. With sufficient effort, these bugs could potentially be exploited to run arbitrary code. The vulnerability is also described as a buffer overflow issue when processing HTML content, which could allow a remote attacker to execute arbitrary code.
Recommendations For versions prior to 119, update to version 119 or later to resolve the issue. As a temporary workaround, consider restricting the use of HTML content processing in Firefox until a patch is available.

Fix

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2023-6639
ALT-PU-2024-13898
ALT-PU-2024-15839
ALT-PU-2024-15840
BDU:2023-07275
CVE-2023-5731
OESA-2025-1265
OESA-2025-1268
OPENSUSE-SU-2023_4214-1
OPENSUSE-SU-2024:13385-1
OPENSUSE-SU-2024:14572-1
SUSE-SU-2023:4212-1
SUSE-SU-2023:4213-1
SUSE-SU-2023:4214-1
USN-6456-1
USN-6456-2

Affected Products

Alt Linux
Astra Linux
Firefox
Linuxmint
Suse
Ubuntu