CVE-2023-37202 Information

Description

Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in the main compartment resulting in a use-after-free. This vulnerability affects Firefox < 115 Firefox ESR < 102.13 and Thunderbird < 102.13.

Reference

https://www.mozilla.org/security/advisories/mfsa2023-23/ https://www.mozilla.org/security/advisories/mfsa2023-22/ https://www.mozilla.org/security/advisories/mfsa2023-24/ https://bugzilla.mozilla.org/show_bug.cgi?id=1834711

Share on: