CRITICAL 9.8 Microsoft

CVE-2024-4778

Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.

Microsoft Security Update 2024-May: Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.

Affected Products

References

Published: 2024-05-14 · Source: Microsoft · Feed updated: 2026-08-04
This critical severity vulnerability with a CVSS score of 9.8 was published on 2024-05-14 via Microsoft. Affected: azl3 mozjs 102.15.1-1 on Azure Linux 3.0.

Risk Timeline

CVE Disclosed2024-05-14 · 811 days ago

Remediation Resources

Related Vulnerabilities

CVETitleSeverityCVSS
CVE-2026-40175Axios has Unrestricted Cloud Metadata Exfiltration via Header Injection ChainCRITICAL10.0
CVE-2026-42960Possible cache poisoning via promiscuous records for the authority sectionCRITICAL10.0
CVE-2026-46595Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/xCRITICAL10.0
CVE-2026-39821Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/neCRITICAL10.0
CVE-2024-24576 PoCRusts's `std::process::Command` did not properly escape arguments of batch filesCRITICAL10.0
CVE-2026-7374Kubevirt: kubevirt virt-handler: privilege escalation and node compromise via syCRITICAL9.9
vulnfeed aggregates 9166 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.