Security Advisory

CVE-2024-7652

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-09-06 18:18:28
Last updated 2025-10-30 16:14:30
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

An error in the ECMA-262 specification relating to Async Generators could have resulted in a type confusion, potentially leading to memory corruption and an exploitable crash. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.