CVE-2023-29531: Critical severity thunderbird vulnerability
An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash.
This bug only affects Firefox and Thunderbird for macOS. Other operating systems are unaffected. This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.
Other sources
An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash.This bug only affects Firefox for macOS. Other operating systems are unaffected.
An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash.This bug only affects Thunderbird for macOS. Other operating systems are unaffected.
— Mozilla
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-29531
- CVE-2023-29532
- CVE-2023-29533
- CVE-2023-1999
- CVE-2023-29535
- CVE-2023-29536
- CVE-2023-0547
- CVE-2023-29479
- CVE-2023-29539
- CVE-2023-29541
- CVE-2023-29542
- CVE-2023-29545
- CVE-2023-1945
- CVE-2023-29548
- CVE-2023-29550
- CVE-2023-29534
- CVE-2023-29537
- CVE-2023-29538
- CVE-2023-29540
- CVE-2023-29543
- CVE-2023-29544
- CVE-2023-29546
- CVE-2023-29547
- CVE-2023-29549
- CVE-2023-29551
Frequently Asked Questions
What is CVE-2023-29531?
CVE-2023-29531 is a vulnerability that allows an attacker to cause an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash.
Which operating systems are affected by CVE-2023-29531?
This bug only affects Thunderbird for macOS. Other operating systems are unaffected.
What is the severity level of CVE-2023-29531?
CVE-2023-29531 has a severity level of high.
How can I fix CVE-2023-29531?
To fix CVE-2023-29531, update Thunderbird for macOS to version 102.10 or higher.
Where can I find more information about CVE-2023-29531?
You can find more information about CVE-2023-29531 on the Mozilla Security Advisories page.