Impact
A flaw in the XPCOM component causes an integer overflow through improper boundary checks, allowing a sandbox escape that could let an attacker execute arbitrary code with the privileges of the affected application. The weakness is classed under CWE-120, CWE-190, and CWE-754.
Affected Systems
Mozilla Firefox and Thunderbird are affected. Versions prior to Firefox 149, Firefox ESR 115.34 and ESR 140.9, Thunderbird 149 and Thunderbird 140.9 contain the flaw; the stated releases include the fix.
Risk and Exploitability
The CVSS score of 9.6 marks the vulnerability as critical, and the EPSS score indicates a low probability of exploitation. The CVE description does not specify an attack vector, so it is inferred that an attacker would need to supply crafted data to a sandboxed process, but the precise method is not described. The flaw is not yet listed in the CISA KEV catalog.
OpenCVE Enrichment
Debian DLA
Debian DSA