CVE-2022-28285 Information
Dec 23, 2022
cve
Description
When generating the assembly code for MLoadTypedArrayElementHole an incorrect AliasSet was used. In conjunction with another vulnerability this could have been used for an out of bounds memory read. This vulnerability affects Thunderbird < 91.8 Firefox < 99 and Firefox ESR < 91.8.
Reference
https://www.mozilla.org/security/advisories/mfsa2022-13/ https://www.mozilla.org/security/advisories/mfsa2022-15/ https://bugzilla.mozilla.org/show_bug.cgi?id=1756957 https://www.mozilla.org/security/advisories/mfsa2022-14/
Share on: