CVE-2023-6864: High severity thunderbird vulnerability
Last updated 24 July 2024
Other sources
Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-6864?
CVE-2023-6864 is classified as a memory safety vulnerability that could potentially allow arbitrary code execution.
How do I fix CVE-2023-6864?
To mitigate CVE-2023-6864, update to Firefox version 121 or Firefox ESR and Thunderbird version 115.6 or later.
What software is affected by CVE-2023-6864?
CVE-2023-6864 affects Firefox versions up to 121, Firefox ESR versions up to 115.6, and Thunderbird versions up to 115.6.
Can CVE-2023-6864 be exploited remotely?
While CVE-2023-6864 shows evidence of memory corruption, exploitation would require significant effort and is not guaranteed.
When was CVE-2023-6864 disclosed?
CVE-2023-6864 was disclosed on July 24, 2024.