CVE-2024-7519 — Out-of-bounds Write in Mozilla Firefox
Severity
9.6CRITICALNVD
EPSS
0.4%
top 41.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 6
Latest updateDec 27
Description
Insufficient checks when processing graphics shared memory could have led to memory corruption. This could be leveraged by an attacker to perform a sandbox escape. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:HExploitability: 2.8 | Impact: 6.0
Affected Packages7 packages
🔴Vulnerability Details
5OSV▶
CVE-2024-7519: Insufficient checks when processing graphics shared memory could have led to memory corruption↗2024-08-06
GHSA▶
GHSA-9wvx-3hw8-4ghf: Insufficient checks when processing graphics shared memory could have led to memory corruption↗2024-08-06
CVEList▶
CVE-2024-7519: Insufficient checks when processing graphics shared memory could have led to memory corruption↗2024-08-06
📋Vendor Advisories
10Debian▶
CVE-2024-7519: firefox - Insufficient checks when processing graphics shared memory could have led to mem...↗2024