Release Date: | 2023-07-13 |
Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in the main compartment resulting in a use-after-free. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.
See more information about CVE-2023-37202 from MITRE CVE dictionary and NIST NVD
NOTE: The following CVSS v3.0 metrics and score provided are preliminary and subject to review.
Platform | Errata | Release Date |
Oracle Linux version 7 (firefox) | ELSA-2023-4079 | 2023-07-21 |
Oracle Linux version 7 (thunderbird) | ELSA-2023-4062 | 2023-07-21 |
Oracle Linux version 8 (firefox) | ELSA-2023-4076 | 2023-07-17 |
Oracle Linux version 8 (thunderbird) | ELSA-2023-4063 | 2023-07-17 |
Oracle Linux version 9 (firefox) | ELSA-2023-4071 | 2023-07-17 |
Oracle Linux version 9 (thunderbird) | ELSA-2023-4064 | 2023-07-17 |
This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team