CVE-2023-4576
Published: 30 August 2023
On Windows, an integer overflow could occur in <code>RecordedSourceSurfaceCreation</code> which resulted in a heap buffer overflow potentially leaking sensitive data that could have led to a sandbox escape.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Firefox ESR < 102.15.
Notes
Author | Note |
---|---|
tyhicks | mozjs contains a copy of the SpiderMonkey JavaScript engine |
mdeslaur | starting with Ubuntu 22.04, the firefox package is just a script that installs the Firefox snap |
Priority
Status
Package | Release | Status |
---|---|---|
firefox Launchpad, Ubuntu, Debian |
trusty |
Ignored
(end of standard support)
|
xenial |
Ignored
(end of standard support)
|
|
bionic |
Ignored
(end of standard support)
|
|
focal |
Ignored
(only affects macOS)
|
|
jammy |
Ignored
(only affects macOS)
|
|
lunar |
Ignored
(only affects macOS)
|
|
upstream |
Needs triage
|
|
thunderbird Launchpad, Ubuntu, Debian |
trusty |
Ignored
(end of standard support)
|
xenial |
Ignored
(end of standard support)
|
|
bionic |
Ignored
(end of standard support)
|
|
focal |
Ignored
(only affects Windows)
|
|
jammy |
Ignored
(only affects Windows)
|
|
lunar |
Ignored
(only affects Windows)
|
|
upstream |
Ignored
(only affects macOS)
|
|
mozjs38 Launchpad, Ubuntu, Debian |
trusty |
Does not exist
|
xenial |
Does not exist
|
|
bionic |
Ignored
(only affects macOS)
|
|
focal |
Does not exist
|
|
jammy |
Does not exist
|
|
lunar |
Does not exist
|
|
upstream |
Ignored
(only affects macOS)
|
|
mozjs52 Launchpad, Ubuntu, Debian |
trusty |
Does not exist
|
xenial |
Does not exist
|
|
bionic |
Ignored
(only affects macOS)
|
|
focal |
Ignored
(only affects macOS)
|
|
jammy |
Does not exist
|
|
lunar |
Does not exist
|
|
upstream |
Ignored
(only affects macOS)
|
|
mozjs68 Launchpad, Ubuntu, Debian |
trusty |
Does not exist
|
xenial |
Does not exist
|
|
bionic |
Does not exist
|
|
focal |
Ignored
(only affects macOS)
|
|
jammy |
Does not exist
|
|
lunar |
Does not exist
|
|
upstream |
Ignored
(only affects macOS)
|
|
mozjs78 Launchpad, Ubuntu, Debian |
trusty |
Does not exist
|
xenial |
Does not exist
|
|
bionic |
Does not exist
|
|
focal |
Does not exist
|
|
jammy |
Ignored
(only affects macOS)
|
|
lunar |
Ignored
(only affects macOS)
|
|
upstream |
Ignored
(only affects macOS)
|
|
mozjs91 Launchpad, Ubuntu, Debian |
trusty |
Does not exist
|
xenial |
Does not exist
|
|
bionic |
Does not exist
|
|
focal |
Does not exist
|
|
jammy |
Ignored
(only affects macOS)
|
|
lunar |
Does not exist
|
|
upstream |
Ignored
(only affects macOS)
|
|
mozjs102 Launchpad, Ubuntu, Debian |
trusty |
Does not exist
|
xenial |
Does not exist
|
|
bionic |
Does not exist
|
|
focal |
Does not exist
|
|
jammy |
Ignored
(only affects macOS)
|
|
lunar |
Ignored
(only affects macOS)
|
|
upstream |
Ignored
(only affects macOS)
|