CVE-2024-2612
published 2024-03-19CVE-2024-2612: If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code…
high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | < firefox 124.0-1 (sid) | firefox 124.0-1 (sid) |
| debian | firefox-esr | < firefox 124.0-1 (sid) | firefox 124.0-1 (sid) |
| debian | thunderbird | < firefox 124.0-1 (sid) | firefox 124.0-1 (sid) |
| mozilla | firefox | < 115.9 | 115.9 |
| mozilla | firefox | < 124.0 | 124.0 |
| mozilla | firefox | — | — |
| mozilla | firefox | >= 0 < 124.0+build1-0ubuntu0.20.04.1 | 124.0+build1-0ubuntu0.20.04.1 |
| mozilla | firefox | >= unspecified < 124 | 124 |
| mozilla | firefox_esr | >= unspecified < 115.9 | 115.9 |
| mozilla | thunderbird | < 115.9 | 115.9 |
| mozilla | thunderbird | >= 0 < 1:115.9.0-1~deb11u1 | 1:115.9.0-1~deb11u1 |
| mozilla | thunderbird | >= 0 < 1:115.9.0-1~deb12u1 | 1:115.9.0-1~deb12u1 |
| mozilla | thunderbird | >= 0 < 1:115.9.0-1 | 1:115.9.0-1 |
| mozilla | thunderbird | >= 0 < 1:115.9.0-1 | 1:115.9.0-1 |
| mozilla | thunderbird | >= 0 < 1:115.9.0+build1-0ubuntu0.20.04.1 | 1:115.9.0+build1-0ubuntu0.20.04.1 |
| mozilla | thunderbird | >= 0 < 1:115.9.0+build1-0ubuntu0.22.04.1 | 1:115.9.0+build1-0ubuntu0.22.04.1 |
| mozilla | thunderbird | >= unspecified < 115.9 | 115.9 |
| msrc | azl3_mozjs_102.15.1-1_on_azure_linux_3.0 | — | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
osv8.1HIGH
Red Hat
kernel: f2fs: fix to do sanity check on F2FS_INLINE_DATA flag in inode during GC
vendor_redhat·2024-08-26·CVSS 7.8
CVE-2024-44942 [HIGH] CWE-99 kernel: f2fs: fix to do sanity check on F2FS_INLINE_DATA flag in inode during GC
kernel: f2fs: fix to do sanity check on F2FS_INLINE_DATA flag in inode during GC
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to do sanity check on F2FS_INLINE_DATA flag in inode during GC
syzbot reports a f2fs bug as below:
------------[ cut here ]------------
kernel BUG at fs/f2fs/inline.c:258!
CPU: 1 PID: 34 Comm: kworker/u8:2 Not tainted 6.9.0-rc6-syzkaller-00012-g9e4bc4bcae01 #0
RIP: 0010:f2fs_write_inline_data+0x781/0x790 fs/f2fs/inline.c:258
Call Trace:
f2fs_write_single_data_page+0xb65/0x1d60 fs/f2fs/data.c:2834
f2fs_write_cache_pages fs/f2fs/data.c:3133 [inline]
__f2fs_write_data_pages fs/f2fs/data.c:3288 [inline]
f2fs_write_data_pages+0x1efe/0x3a90 fs/f2fs/data.c:3315
do_writepages+0x35b/0x870 mm/page-writeback.c:2612
__writeback_single_inode+0x1
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2024-03-26·CVSS 6.5
CVE-2024-2610 [MEDIUM] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Multiple security issues were discovered in Thunderbird. If a user were
tricked into opening a specially crafted website in a browsing context, an
attacker could potentially exploit these to cause a denial of service,
obtain sensitive information, bypass security restrictions, cross-site
tracing, or execute arbitrary code. (CVE-2024-0743, CVE-2024-2611,
CVE-2024-2614)
Hubert Kario discovered that Thunderbird had a timing side-channel when
performing RSA decryption. A remote attacker could possibly use this
issue to recover sensitive information. (CVE-2023-5388)
Gary Kwong discovered that Thunderbird incorrectly updated return
registers for JIT code on Armv7-A systems. An attacker could potent
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2024-03-20·CVSS 6.5
CVE-2024-2610 [MEDIUM] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Several security issues were fixed in Firefox.
Multiple security issues were discovered in Firefox. If a user were
tricked into opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, obtain sensitive
information across domains, or execute arbitrary code. (CVE-2024-2609,
CVE-2024-2611, CVE-2024-2614, CVE-2024-2615)
Hubert Kario discovered that Firefox had a timing side-channel when
performing RSA decryption. A remote attacker could possibly use this
issue to recover sensitive information. (CVE-2023-5388)
It was discovered that Firefox did not properly handle WASM register
values in some circumstances. An attacker could potentially exploit this
issue to cause a denial of service. (CVE-2024-260
Red Hat
Mozilla: Self referencing object could have potentially led to a use-after-free
vendor_redhat·2024-03-19·CVSS 8.1
CVE-2024-2612 [HIGH] CWE-416 Mozilla: Self referencing object could have potentially led to a use-after-free
Mozilla: Self referencing object could have potentially led to a use-after-free
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
The Mozilla Foundation Security Advisory describes this flaw as:
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution.
Statement: Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory.
Package: firefox (Red Hat Enterprise Linux 6) - Out of support scope
Package: thunderbird (Red
Microsoft
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Fir
vendor_msrc·2024-03-12·CVSS 8.1
CVE-2024-2612 [HIGH] CWE-416 If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Fir
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the C
Debian
CVE-2024-2612: firefox - If an attacker could find a way to trigger a particular code path in `SafeRefPtr...
vendor_debian·2024·CVSS 8.1
CVE-2024-2612 [HIGH] CVE-2024-2612: firefox - If an attacker could find a way to trigger a particular code path in `SafeRefPtr...
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
Scope: local
sid: resolved (fixed in 124.0-1)
Mozilla
Mozilla Foundation Security Advisory 2024-12: CVE-2024-2612
vendor_mozilla·CVSS 8.1
CVE-2024-2612 [HIGH] Mozilla Foundation Security Advisory 2024-12: CVE-2024-2612
Mozilla Foundation Security Advisory 2024-12
CVE: CVE-2024-2612
Product: Firefox
Impact: critical
Fixed in: Firefox 124
Mozilla
Mozilla Foundation Security Advisory 2024-13: CVE-2024-2612
vendor_mozilla·CVSS 8.1
CVE-2024-2612 [HIGH] Mozilla Foundation Security Advisory 2024-13: CVE-2024-2612
Mozilla Foundation Security Advisory 2024-13
CVE: CVE-2024-2612
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 115.9
Mozilla
Mozilla Foundation Security Advisory 2024-14: CVE-2024-2612
vendor_mozilla·CVSS 8.1
CVE-2024-2612 [HIGH] Mozilla Foundation Security Advisory 2024-14: CVE-2024-2612
Mozilla Foundation Security Advisory 2024-14
CVE: CVE-2024-2612
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 115.9
OSV
thunderbird vulnerabilities
osv·2024-03-26·CVSS 6.5
CVE-2024-0743 [MEDIUM] thunderbird vulnerabilities
thunderbird vulnerabilities
Multiple security issues were discovered in Thunderbird. If a user were
tricked into opening a specially crafted website in a browsing context, an
attacker could potentially exploit these to cause a denial of service,
obtain sensitive information, bypass security restrictions, cross-site
tracing, or execute arbitrary code. (CVE-2024-0743, CVE-2024-2611,
CVE-2024-2614)
Hubert Kario discovered that Thunderbird had a timing side-channel when
performing RSA decryption. A remote attacker could possibly use this
issue to recover sensitive information. (CVE-2023-5388)
Gary Kwong discovered that Thunderbird incorrectly updated return
registers for JIT code on Armv7-A systems. An attacker could potentially
exploit this issue to execute arbitrary code. (CVE-2024-2607)
OSV
firefox vulnerabilities
osv·2024-03-20·CVSS 6.5
CVE-2024-2609 [MEDIUM] firefox vulnerabilities
firefox vulnerabilities
Multiple security issues were discovered in Firefox. If a user were
tricked into opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, obtain sensitive
information across domains, or execute arbitrary code. (CVE-2024-2609,
CVE-2024-2611, CVE-2024-2614, CVE-2024-2615)
Hubert Kario discovered that Firefox had a timing side-channel when
performing RSA decryption. A remote attacker could possibly use this
issue to recover sensitive information. (CVE-2023-5388)
It was discovered that Firefox did not properly handle WASM register
values in some circumstances. An attacker could potentially exploit this
issue to cause a denial of service. (CVE-2024-2606)
Gary Kwong discovered that Firefox incorrectly updated retur
GHSA
GHSA-j8f6-q345-c99f: If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achi
ghsa_unreviewed·2024-03-19
CVE-2024-2612 [HIGH] CWE-416 GHSA-j8f6-q345-c99f: If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achi
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
OSV
CVE-2024-2612: If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achi
osv·2024-03-19·CVSS 8.1
CVE-2024-2612 [HIGH] CVE-2024-2612: If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achi
If an attacker could find a way to trigger a particular code path in `SafeRefPtr`, it could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.mozilla.org/show_bug.cgi?id=1879444https://lists.debian.org/debian-lts-announce/2024/03/msg00022.htmlhttps://lists.debian.org/debian-lts-announce/2024/03/msg00028.htmlhttps://www.mozilla.org/security/advisories/mfsa2024-12/https://www.mozilla.org/security/advisories/mfsa2024-13/https://www.mozilla.org/security/advisories/mfsa2024-14/https://bugzilla.mozilla.org/show_bug.cgi?id=1879444https://lists.debian.org/debian-lts-announce/2024/03/msg00022.htmlhttps://lists.debian.org/debian-lts-announce/2024/03/msg00028.htmlhttps://www.mozilla.org/security/advisories/mfsa2024-12/https://www.mozilla.org/security/advisories/mfsa2024-13/https://www.mozilla.org/security/advisories/mfsa2024-14/
2024-03-19
Published