CRITICAL 9.8 Microsoft
CVE-2024-5701
Memory safety bugs present in Firefox 126. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 127.
Microsoft Security Update 2024-Jun: Memory safety bugs present in Firefox 126. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 127.
Affected Products
- azl3 mozjs 102.15.1-1 on Azure Linux 3.0
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-5701
- https://nvd.nist.gov/vuln/detail/CVE-2024-5701
This critical severity vulnerability with a CVSS score of 9.8 was published on 2024-06-11 via Microsoft. Affected: azl3 mozjs 102.15.1-1 on Azure Linux 3.0.
Risk Timeline
CVE Disclosed2024-06-11 · 827 days ago
Remediation Resources
Official Advisory
msrc.microsoft.com/update-guide/vulnerability/CVE-2024-5701NVD / MITRE
nvd.nist.gov/vuln/detail/CVE-2024-5701Related Vulnerabilities
| CVE | Title | Severity | CVSS |
|---|---|---|---|
| CVE-2025-62168 PoC | Squid vulnerable to information disclosure via authentication credential leakage | CRITICAL | 10.0 |
| CVE-2026-39821 | Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/ne | CRITICAL | 10.0 |
| CVE-2026-42960 | Possible cache poisoning via promiscuous records for the authority section | CRITICAL | 10.0 |
| CVE-2026-46595 | Invoking VerifiedPublicKeyCallback permissions skip enforcement in golang.org/x | CRITICAL | 10.0 |
| CVE-2026-7374 | Kubevirt: kubevirt virt-handler: privilege escalation and node compromise via sy | CRITICAL | 9.9 |
| CVE-2022-48716 | ASoC: codecs: wcd938x: fix incorrect used of portid | CRITICAL | 9.8 |
vulnfeed aggregates 8294 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.