Severity
5.3MEDIUMNVD
OSV7.5
EPSS
0.3%
top 49.42%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 29
Latest updateFeb 2

Description

Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. This vulnerability affects Firefox < 132 and Thunderbird < 132.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.6 | Impact: 3.6

Affected Packages6 packages

CVEListV5mozilla/firefoxunspecified132
NVDmozilla/firefox< 132.0
CVEListV5mozilla/thunderbirdunspecified132
NVDmozilla/thunderbird< 132.0
Ubuntumozilla/firefox< 132.0+build1-0ubuntu0.20.04.1

🔴Vulnerability Details

4
OSV
firefox vulnerabilities2024-10-31
OSV
CVE-2024-10468: Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash2024-10-29
CVEList
CVE-2024-10468: Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash2024-10-29
GHSA
GHSA-xhw3-h8gq-2w23: Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash2024-10-29

📋Vendor Advisories

6
Ubuntu
Thunderbird vulnerabilities2026-02-02
Ubuntu
Firefox vulnerabilities2024-10-31
Red Hat
thunderbird: Race conditions in IndexedDB2024-10-29
Debian
CVE-2024-10468: firefox - Potential race conditions in IndexedDB could have caused memory corruption, lead...2024
Mozilla
Mozilla Foundation Security Advisory 2024-55: CVE-2024-10468
CVE-2024-10468 — Race Condition in Mozilla Firefox | cvebase