Vulnerability CVE-2022-22737: Information
Description
Constructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could have lead to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.
Severity: HIGH (7.5) Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Fixed packages
References to Advisories, Solutions, and Tools
Hyperlink | Resource |
---|---|
https://www.mozilla.org/security/advisories/mfsa2022-02/ |
|
https://www.mozilla.org/security/advisories/mfsa2022-01/ |
|
https://bugzilla.mozilla.org/show_bug.cgi?id=1745874 |
|
https://www.mozilla.org/security/advisories/mfsa2022-03/ |
|