Memory safety bugs present in Firefox 127 and Thunderbird 127. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128 and Thunderbird < 128.
                
            Metrics
Affected Vendors & Products
Advisories
    | Source | ID | Title | 
|---|---|---|
|  Ubuntu USN | USN-6890-1 | Firefox vulnerabilities | 
Fixes
    Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
        History
                    Thu, 30 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Title | Memory safety bugs fixed in Firefox 128 and Thunderbird 128 | 
Wed, 06 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Mozilla Mozilla firefox Mozilla thunderbird | |
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* | |
| Vendors & Products | Mozilla Mozilla firefox Mozilla thunderbird | |
| Metrics | cvssV3_1 
 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2025-10-30T16:16:20.528Z
Reserved: 2024-07-09T14:12:57.830Z
Link: CVE-2024-6615
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-01T21:41:04.046Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-07-09T15:15:13.307
Modified: 2025-04-04T14:41:55.703
Link: CVE-2024-6615
 Redhat
                        Redhat
                    No data.
 OpenCVE Enrichment
                        OpenCVE Enrichment
                    No data.