CRITICAL 9.8 Microsoft

CVE-2023-4058

Memory safety bugs present in Firefox 115. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 116.

Microsoft Security Update 2023-Aug: Memory safety bugs present in Firefox 115. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 116.

Affected Products

References

Published: 2023-08-08 · Source: Microsoft · Feed updated: 2026-08-14
This critical severity vulnerability with a CVSS score of 9.8 was published on 2023-08-08 via Microsoft. Affected: azl3 mozjs 102.15.1-1 on Azure Linux 3.0.

Risk Timeline

CVE Disclosed2023-08-08 · 1102 days ago

Remediation Resources

Related Vulnerabilities

CVETitleSeverityCVSS
CVE-2026-42960Possible cache poisoning via promiscuous records for the authority sectionCRITICAL10.0
CVE-2026-46595Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/xCRITICAL10.0
CVE-2026-39821Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/neCRITICAL10.0
CVE-2026-40175Axios has Unrestricted Cloud Metadata Exfiltration via Header Injection ChainCRITICAL10.0
CVE-2024-24576 PoCRusts's `std::process::Command` did not properly escape arguments of batch filesCRITICAL10.0
CVE-2022-36648The hardware emulation in the of_dpa_cmd_add_l2_flood of rocker device model in CRITICAL10.0
vulnfeed aggregates 10939 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.