CVE-2022-28281 log
| Source |
|
| Severity | High |
| Remote | Yes |
| Type | Arbitrary code execution |
| Description | If a compromised content process sent an unexpected number of WebAuthN Extensions in a Register command to the parent process, an out of bounds write would have occurred leading to memory corruption and a potentially exploitable crash. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-2712 | thunderbird | 91.7.0-1 | 91.8.0-1 | High | Not affected | |
| AVG-2711 | firefox | 98.0.2-1 | 99.0-1 | High | Fixed |
| References |
|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=1755621 |