Vulnerability CVE-2024-3855: Information

Description

In certain cases the JIT incorrectly optimized MSubstr operations, which led to out-of-bounds reads. This vulnerability affects Firefox < 125.

Published: April 16, 2024
Modified: April 17, 2024

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
firefoxsisyphus125.0.1-alt1125.0.3-alt1ALT-PU-2024-6765-2345346Fixed
firefoxsisyphus_loongarch64125.0.1-alt1.0.port125.0.3-alt1.0.portALT-PU-2024-7109-1-Fixed

References to Advisories, Solutions, and Tools