← Back to CVE List

CVE-2023-4576

Published: 2023-09-11T09:15Z
Last Modified: 2024-11-21T08:35Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
On Windows, an integer overflow could occur in `RecordedSourceSurfaceCreation` which resulted in a heap buffer overflow potentially leaking sensitive data that could have led to a sandbox escape. *This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 117, Firefox ESR < 102.15, Firefox ESR < 115.2, Thunderbird < 102.15, and Thunderbird < 115.2. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt