Page 1 of 1

Mozilla Patches Firefox Vulnerability Allowing Remote Code Execution, Sandbox Escape

Posted: Thu Dec 21, 2023 2:54 am
by rbc
Mozilla on Tuesday announced security updates for both Firefox and Thunderbird, to address 20 vulnerabilities, including several memory safety issues.

Firefox 121 was released with patches for 18 vulnerabilities, five of which have a ‘high’ severity rating.

At the top of the list is CVE-2023-6856, a heap buffer overflow bug in WebGL, the JavaScript API for rendering interactive graphics within the browser.
[...]
Mozilla Patches Firefox Vulnerability A ... box Escape