PT-2023-6534 · Mozilla+9 · Firefox+11

Andrew Mccreight

+2

·

Published

2023-10-24

·

Updated

2025-03-14

·

CVE-2023-5730

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 119 Firefox ESR versions prior to 115.4 Thunderbird versions prior to 115.4.1
Description The issue is related to memory safety bugs that can lead to memory corruption. It is presumed that with sufficient effort, these bugs could be exploited to run arbitrary code. The vulnerability is associated with a buffer overflow in memory, which can allow a remote attacker to execute arbitrary code.
Recommendations For Firefox versions prior to 119, update to version 119 or later. For Firefox ESR versions prior to 115.4, update to version 115.4 or later. For Thunderbird versions prior to 115.4.1, update to version 115.4.1 or later.

Exploit

Fix

Memory Corruption

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2023:6187
ALSA-2023:6188
ALSA-2023:6191
ALSA-2023:6194
ALT-PU-2023-6639
ALT-PU-2023-6856
ALT-PU-2023-6883
ALT-PU-2023-6908
ALT-PU-2024-13898
ALT-PU-2024-15839
ALT-PU-2024-3614
ALT-PU-2024-3860
ALT-PU-2024-4748
BDU:2023-07281
CESA-2023_6187
CESA-2023_6194
CVE-2023-5730
DLA-3632-1
DLA-3637-1
DSA-5535-1
DSA-5538-1
MGASA-2023-0308
MGASA-2023-0309
OESA-2025-1265
OESA-2025-1268
OPENSUSE-SU-2023_4214-1
OPENSUSE-SU-2023_4302-1
OPENSUSE-SU-2023_4551-1
OPENSUSE-SU-2024:13356-1
OPENSUSE-SU-2024:13385-1
OPENSUSE-SU-2024:13412-1
OPENSUSE-SU-2024:14572-1
RHSA-2023:6162
RHSA-2023:6185
RHSA-2023:6186
RHSA-2023:6187
RHSA-2023:6188
RHSA-2023:6189
RHSA-2023:6191
RHSA-2023:6194
RHSA-2023:6195
RHSA-2023:6196
RHSA-2023:6197
RHSA-2023:6198
RHSA-2023:6199
RHSA-2023_6162
RHSA-2023_6187
RHSA-2023_6188
RHSA-2023_6191
RHSA-2023_6194
RLSA-2023:6188
SUSE-SU-2023:4212-1
SUSE-SU-2023:4213-1
SUSE-SU-2023:4214-1
SUSE-SU-2023:4302-1
SUSE-SU-2023:4532-1
SUSE-SU-2023:4533-1
SUSE-SU-2023:4551-1
USN-6456-1
USN-6456-2
USN-6468-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Firefox
Firefox Esr
Linuxmint
Red Hat
Red Os
Suse
Thunderbird
Ubuntu