Security Advisory

CVE-2024-2605

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-19 12:02:51
Last updated 2025-03-13 18:16:41
Assigner mozilla
State PUBLISHED

Description

An attacker could have leveraged the Windows Error Reporter to run arbitrary code on the system escaping the sandbox. *Note:* This issue only affected Windows operating systems. Other operating systems are unaffected. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.