CVE-2024-2614: High severity thunderbird vulnerability
Last updated 28 February 2025
Other sources
Memory safety bugs present in Firefox 123, Firefox ESR 115.8, and Thunderbird 115.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-2614?
CVE-2024-2614 is classified as a memory safety vulnerability, which could potentially allow for arbitrary code execution under certain conditions.
How do I fix CVE-2024-2614?
To remediate CVE-2024-2614, update your Firefox to version 124, Firefox ESR to version 115.9, or Thunderbird to version 115.9.
Which software versions are affected by CVE-2024-2614?
CVE-2024-2614 affects Firefox versions up to 123, Firefox ESR versions up to 115.8, and Thunderbird versions up to 115.8.
Can CVE-2024-2614 be exploited?
Yes, CVE-2024-2614 includes memory safety bugs that may be exploited to execute arbitrary code if leveraged appropriately.
Is there a patch available for CVE-2024-2614?
Yes, patches for CVE-2024-2614 are available in the latest software versions released by Mozilla.