CRITICAL 9.8 Microsoft
CVE-2024-4778
Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.
Microsoft Security Update 2024-May: Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.
Affected Products
- azl3 mozjs 102.15.1-1 on Azure Linux 3.0
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-4778
- https://nvd.nist.gov/vuln/detail/CVE-2024-4778
This critical severity vulnerability with a CVSS score of 9.8 was published on 2024-05-14 via Microsoft. Affected: azl3 mozjs 102.15.1-1 on Azure Linux 3.0.
Risk Timeline
CVE Disclosed2024-05-14 · 857 days ago
Remediation Resources
Official Advisory
msrc.microsoft.com/update-guide/vulnerability/CVE-2024-4778NVD / MITRE
nvd.nist.gov/vuln/detail/CVE-2024-4778Related Vulnerabilities
| CVE | Title | Severity | CVSS |
|---|---|---|---|
| CVE-2025-62168 PoC | Squid vulnerable to information disclosure via authentication credential leakage | CRITICAL | 10.0 |
| CVE-2026-39821 | Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/ne | CRITICAL | 10.0 |
| CVE-2026-42960 | Possible cache poisoning via promiscuous records for the authority section | CRITICAL | 10.0 |
| CVE-2026-46595 | Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/x | CRITICAL | 10.0 |
| CVE-2026-7374 | Kubevirt: kubevirt virt-handler: privilege escalation and node compromise via sy | CRITICAL | 9.9 |
| CVE-2026-85504 | FreeIPMI before 1.6.19 has a stack-based buffer overflow in _ipmi_sel_oem_fujits | CRITICAL | 9.8 |
vulnfeed aggregates 14156 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.