CVE-2023-5169
Summary
| CVE | CVE-2023-5169 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-09-27 15:19:00 UTC |
| Updated | 2023-10-12 02:53:00 UTC |
| Description | A compromised content process could have provided malicious data in a `PathRecording` resulting in an out-of-bounds write, leading to a potentially exploitable crash in a privileged process. This vulnerability affects Firefox < 118, Firefox ESR < 115.3, and Thunderbird < 115.3. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160952 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2023-5435)
- 160954 Oracle Enterprise Linux Security Update for firefox (ELSA-2023-5434)
- 160959 Oracle Enterprise Linux Security Update for firefox (ELSA-2023-5433)
- 160961 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2023-5428)
- 160972 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2023-5475)
- 160976 Oracle Enterprise Linux Security Update for firefox (ELSA-2023-5477)
- 199794 Ubuntu Security Notification for Thunderbird Vulnerabilities (USN-6405-1)
- 199795 Ubuntu Security Notification for Firefox Vulnerabilities (USN-6404-1)
- 242088 Red Hat Update for thunderbird (RHSA-2023:5429)
- 242089 Red Hat Update for thunderbird (RHSA-2023:5438)
- 242090 Red Hat Update for firefox (RHSA-2023:5433)
- 242091 Red Hat Update for thunderbird (RHSA-2023:5435)
- 242092 Red Hat Update for firefox (RHSA-2023:5427)
- 242093 Red Hat Update for firefox (RHSA-2023:5437)
- 242094 Red Hat Update for thunderbird (RHSA-2023:5439)
- 242095 Red Hat Update for thunderbird (RHSA-2023:5430)
- 242096 Red Hat Update for firefox (RHSA-2023:5436)
- 242097 Red Hat Update for firefox (RHSA-2023:5434)
- 242098 Red Hat Update for firefox (RHSA-2023:5426)
- 242099 Red Hat Update for thunderbird (RHSA-2023:5432)
- 242100 Red Hat Update for firefox (RHSA-2023:5440)
- 242101 Red Hat Update for thunderbird (RHSA-2023:5428)
- 242108 Red Hat Update for thunderbird (RHSA-2023:5475)
- 242115 Red Hat Update for firefox (RHSA-2023:5477)
- 285220 Fedora Security Update for firefox (FEDORA-2023-bbb8d72c6f)
- 296106 Oracle Solaris 11.4 Support Repository Update (SRU) 64.157.2 Missing (CPUOCT2023)
- 356892 Amazon Linux Security Advisory for firefox : ALAS2FIREFOX-2023-017
- 378899 Mozilla Firefox ESR Multiple Vulnerabilities (MFSA2023-42)
- 378900 Mozilla Firefox Multiple Vulnerabilities (MFSA2023-41)
- 378901 Mozilla Thunderbird Multiple Vulnerabilities (MFSA2023-43)
- 503462 Alpine Linux Security Update for firefox-esr
- 506070 Alpine Linux Security Update for firefox-esr
- 6000145 Debian Security Update for thunderbird (DLA 3601-1)
- 6000154 Debian Security Update for firefox-esr (DLA 3587-1)
- 6000206 Debian Security Update for thunderbird (DSA 5513-1)
- 6000217 Debian Security Update for firefox-esr (DSA 5506-1)
- 710875 Gentoo Linux Mozilla Thunderbird Multiple Vulnerabilities (GLSA 202402-25)
- 754953 SUSE Enterprise Linux Security Update for MozillaFirefox (SUSE-SU-2023:3837-1)
- 754994 SUSE Enterprise Linux Security Update for MozillaFirefox (SUSE-SU-2023:3899-1)
- 754995 SUSE Enterprise Linux Security Update for MozillaFirefox (SUSE-SU-2023:3898-1)
- 755053 SUSE Enterprise Linux Security Update for MozillaThunderbird (SUSE-SU-2023:4016-1)
- 941287 AlmaLinux Security Update for thunderbird (ALSA-2023:5435)
- 941288 AlmaLinux Security Update for firefox (ALSA-2023:5434)
- 961025 Rocky Linux Security Update for thunderbird (RLSA-2023:5428)
- 961027 Rocky Linux Security Update for thunderbird (RLSA-2023:5435)