CVE-2024-2611: Medium severity thunderbird vulnerability
A missing delay on when pointer lock was used could have allowed a malicious page to trick a user into granting permissions.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-2611?
CVE-2024-2611 is considered a moderate severity vulnerability due to its potential to trick users into granting permissions.
How do I fix CVE-2024-2611?
To fix CVE-2024-2611, users should update to the latest versions of Firefox, Firefox ESR, and Thunderbird as specified in the vulnerability advisory.
Which versions of software are affected by CVE-2024-2611?
CVE-2024-2611 affects Mozilla Firefox up to version 124, Firefox ESR up to version 115.9, and Thunderbird up to version 115.9.
What impact does CVE-2024-2611 have on user security?
CVE-2024-2611 allows a malicious page to potentially manipulate user permissions without proper user awareness, posing a risk to user security.
How can I determine if my installation is vulnerable to CVE-2024-2611?
You can determine vulnerability to CVE-2024-2611 by checking if your Firefox, Firefox ESR, or Thunderbird version is below the specified remedial versions.