PT-2024-6062 · Mozilla+4 · Firefox+4

Irvan Kurniawan

·

Published

2024-05-14

·

Updated

2025-03-14

·

CVE-2024-4771

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:C
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 126
Description A memory allocation check was missing, leading to a potential use-after-free condition if the allocation failed. This could trigger a crash or potentially be leveraged to achieve code execution. The issue is related to a use-after-free condition, which may allow a remote attacker to access confidential data, compromise its integrity, or cause a denial of service.
Recommendations For versions prior to 126, update to version 126 or later to resolve the issue.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2024-10126
ALT-PU-2024-10593
ALT-PU-2024-15839
ALT-PU-2024-7772
BDU:2024-06886
CVE-2024-4771
OESA-2025-1265
OESA-2025-1268
OPENSUSE-SU-2024:13980-1
OPENSUSE-SU-2024:14572-1
USN-6779-1
USN-6779-2

Affected Products

Alt Linux
Astra Linux
Firefox
Linuxmint
Ubuntu