CVE-2023-6861 Information

Description

The nsWindow::PickerOpen(void) method was susceptible to a heap buffer overflow when running in headless mode. This vulnerability affects Firefox ESR < 115.6 Thunderbird < 115.6 and Firefox < 121.

Reference

https://bugzilla.mozilla.org/show_bug.cgi?id=1864118 https://www.mozilla.org/security/advisories/mfsa2023-54/ https://www.mozilla.org/security/advisories/mfsa2023-55/ https://www.mozilla.org/security/advisories/mfsa2023-56/ https://www.debian.org/security/2023/dsa-5581

Share on: