CVE-2024-10468 — Race Condition in Mozilla Firefox
Severity
5.3MEDIUMNVD
OSV7.5
EPSS
0.3%
top 49.42%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 29
Latest updateFeb 2
Description
Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. This vulnerability affects Firefox < 132 and Thunderbird < 132.
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.6 | Impact: 3.6
Affected Packages6 packages
🔴Vulnerability Details
4OSV▶
CVE-2024-10468: Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash↗2024-10-29
CVEList▶
CVE-2024-10468: Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash↗2024-10-29
GHSA▶
GHSA-xhw3-h8gq-2w23: Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash↗2024-10-29
📋Vendor Advisories
6Debian▶
CVE-2024-10468: firefox - Potential race conditions in IndexedDB could have caused memory corruption, lead...↗2024