CVE-2023-6861

Publication date

2023-12-19 13:38:42

Family

mozilla

State

PUBLISHED

Description

The `nsWindow::PickerOpen(void)` method was susceptible to a heap buffer overflow when running in headless mode. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.