CVE-2023-6873: High severity firefox vulnerability
Published Dec 19, 2023
·Updated
Last updated 24 July 2024
Other sources
Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
Affected Software
7 affected componentsFixes available
Mozilla Firefox<121
121
Mozilla Firefox<121.0
Debian Debian Linux=10.0
Debian Debian Linux=11.0
Debian Debian Linux=12.0
debian/firefox
137.0.2-1
debian/thunderbird
1:115.12.0-1~deb11u11:128.9.0esr-1~deb11u11:128.8.0esr-1~deb12u11:128.9.0esr-1~deb12u1
Event History
Dec 19, 2023
CVE Published
via Mozilla·12:00 AM
CVE Published
via MITRE·01:38 PM
Data Sourced
via MITRE·01:38 PM
DescriptionWeakness
Jan 12, 2024
Data Sourced
via Launchpad·12:29 AM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·04:19 AM
RemedyDescriptionSeverityAffected Software
Apr 4, 2025
Data Sourced
via Debian·04:33 AM
DescriptionAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2023-6873?
CVE-2023-6873 has a high severity due to memory safety issues that may allow arbitrary code execution.
2
How do I fix CVE-2023-6873?
To fix CVE-2023-6873, update your Mozilla Firefox to version 121 or later.
3
Which versions of software are affected by CVE-2023-6873?
CVE-2023-6873 affects Firefox versions prior to 121 and certain Debian Linux distributions.
4
What type of vulnerability is CVE-2023-6873?
CVE-2023-6873 is a memory safety vulnerability that can lead to memory corruption.
5
Is there a workaround for CVE-2023-6873?
No specific workaround is recommended; updating to the latest version is the best approach to mitigate CVE-2023-6873.