Mozilla Firefox
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*
An integer overflow vulnerability has been identified in the Widget: Win32 component of Mozilla Firefox. This issue affects Firefox versions prior to 151 and Firefox ESR versions prior to 140.11. The vulnerability arises from improper handling of integer values, which can lead to unexpected behavior or conditions.
Exploitation of this vulnerability could lead to memory safety issues, allowing for potential memory corruption. With sufficient effort, such memory safety bugs could be exploited to execute arbitrary code, according to Mozilla.
Users can upgrade to Firefox 151 or Firefox ESR 140.11 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.