CVE-2022-26385 — Use After Free in Mozilla Firefox
Severity
6.5MEDIUMNVD
OSV8.8
EPSS
0.4%
top 42.37%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 22
Description
In unusual circumstances, an individual thread may outlive the thread's manager during shutdown. This could have led to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox < 98.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6
Affected Packages5 packages
🔴Vulnerability Details
5📋Vendor Advisories
5Debian▶
CVE-2022-26385: firefox - In unusual circumstances, an individual thread may outlive the thread's manager ...↗2022