Vulnerability CVE-2024-4775: Information

Description

An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox < 126.

Published: May 14, 2024
Modified: May 14, 2024

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
firefoxsisyphus126.0-alt1127.0-alt1ALT-PU-2024-7772-2347340Fixed
firefoxsisyphus_riscv64126.0-alt0.port126.0-alt0.portALT-PU-2024-8054-1-Fixed
firefoxsisyphus_loongarch64126.0-alt1.0.port126.0-alt1.0.portALT-PU-2024-7895-1-Fixed
firefoxp11126.0-alt1126.0.1-alt1ALT-PU-2024-7772-2347340Fixed

References to Advisories, Solutions, and Tools