Vulnerability CVE-2024-2608: Information

Description

`AppendEncodedAttributeValue(), ExtraSpaceNeededForAttrEncoding()` and `AppendEncodedCharacters()` could have experienced integer overflows, causing underallocation of an output buffer leading to an out of bounds write. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.

Published: March 19, 2024
Modified: March 25, 2024

Fixed packages

References to Advisories, Solutions, and Tools