Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 130.
History

Fri, 06 Sep 2024 13:45:00 +0000

Type Values Removed Values Added
Title mozilla: From NVD collector mozilla: Memory safety bugs fixed in Firefox 130

Wed, 04 Sep 2024 16:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787
CPEs cpe:2.3:a:mozilla:firefox:129.0:*:*:*:*:*:*:*

Tue, 03 Sep 2024 17:00:00 +0000

Type Values Removed Values Added
Title mozilla: From NVD collector
References
Metrics threat_severity

None

threat_severity

Important


Tue, 03 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Mozilla
Mozilla firefox
Weaknesses CWE-119
CPEs cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
Vendors & Products Mozilla
Mozilla firefox
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 03 Sep 2024 13:00:00 +0000

Type Values Removed Values Added
Description Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 130.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published: 2024-09-03T12:32:20.303Z

Updated: 2024-09-06T18:31:08.729Z

Reserved: 2024-09-03T06:39:18.331Z

Link: CVE-2024-8389

cve-icon Vulnrichment

Updated: 2024-09-03T15:37:46.386Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-03T13:15:06.037

Modified: 2024-09-04T15:50:02.933

Link: CVE-2024-8389

cve-icon Redhat

Severity : Important

Publid Date: 2024-09-03T13:15:06Z

Links: CVE-2024-8389 - Bugzilla