CVE-2022-46880
Summary
| CVE | CVE-2022-46880 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-22 20:15:00 UTC |
| Updated | 2023-05-03 12:16:00 UTC |
| Description | A missing check related to tex units could have led to a use-after-free and potentially exploitable crash.<br />*Note*: This advisory was added on December 13th, 2022 after we better understood the impact of the issue. The fix was included in the original release of Firefox 105. This vulnerability affects Firefox ESR < 102.6, Firefox < 105, and Thunderbird < 102.6. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160357 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2022-9079-1)
- 160358 Oracle Enterprise Linux Security Update for firefox (ELSA-2022-9067-1)
- 160359 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2022-9080-1)
- 160360 Oracle Enterprise Linux Security Update for firefox (ELSA-2022-9072-1)
- 160362 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2022-9074-1)
- 160364 Oracle Enterprise Linux Security Update for firefox (ELSA-2022-9065-1)
- 181322 Debian Security Update for firefox-esr (DSA 5301-1)
- 181333 Debian Security Update for thunderbird (DLA 3242-1)
- 181334 Debian Security Update for firefox-esr (DLA 3241-1)
- 181336 Debian Security Update for thunderbird (DSA 5303-1)
- 184943 Debian Security Update for thunderbird (CVE-2022-46880)
- 199147 Ubuntu Security Notification for Thunderbird Vulnerabilities (USN-5824-1)
- 241014 Red Hat Update for thunderbird (RHSA-2022:9075)
- 241015 Red Hat Update for firefox (RHSA-2022:9068)
- 241016 Red Hat Update for thunderbird (RHSA-2022:9081)
- 241017 Red Hat Update for firefox (RHSA-2022:9066)
- 241018 Red Hat Update for thunderbird (RHSA-2022:9080)
- 241020 Red Hat Update for firefox (RHSA-2022:9069)
- 241021 Red Hat Update for thunderbird (RHSA-2022:9079)
- 241023 Red Hat Update for firefox (RHSA-2022:9072)
- 241024 Red Hat Update for firefox (RHSA-2022:9065)
- 241025 Red Hat Update for thunderbird (RHSA-2022:9078)
- 241027 Red Hat Update for firefox (RHSA-2022:9067)
- 241028 Red Hat Update for thunderbird (RHSA-2022:9074)
- 354760 Amazon Linux Security Advisory for thunderbird : ALAS2-2023-1951
- 356198 Amazon Linux Security Advisory for firefox : ALASFIREFOX-2023-013
- 356285 Amazon Linux Security Advisory for firefox : ALASFIREFOX-2023-008
- 377827 Mozilla Thunderbird Multiple Vulnerabilities (MFSA2022-53)
- 377828 Mozilla Firefox ESR Multiple Vulnerabilities (MFSA2022-52)
- 503453 Alpine Linux Security Update for firefox-esr
- 506061 Alpine Linux Security Update for firefox-esr
- 710713 Gentoo Linux Mozilla Firefox Multiple Vulnerabilities (GLSA 202305-06)
- 710715 Gentoo Linux Mozilla Thunderbird Multiple Vulnerabilities (GLSA 202305-13)
- 752985 SUSE Enterprise Linux Security Update for MozillaFirefox (SUSE-SU-2022:4461-1)
- 752986 SUSE Enterprise Linux Security Update for MozillaFirefox (SUSE-SU-2022:4460-1)
- 752997 SUSE Enterprise Linux Security Update for MozillaFirefox (SUSE-SU-2022:4462-1)
- 753028 SUSE Enterprise Linux Security Update for MozillaThunderbird (SUSE-SU-2022:4579-1)
- 940860 AlmaLinux Security Update for thunderbird (ALSA-2022:9074)
- 940861 AlmaLinux Security Update for firefox (ALSA-2022:9067)
- 940862 AlmaLinux Security Update for firefox (ALSA-2022:9065)
- 940863 AlmaLinux Security Update for thunderbird (ALSA-2022:9080)
- 960522 Rocky Linux Security Update for firefox (RLSA-2022:9067)