Tuesday, March 8, 2022

MFSA2022-09 Thunderbird: Security Vulnerabilities fixed in Firefox 97.0.2, Firefox ESR 91.6.1, Firefox for Android 97.3.0, and Focus 97.3.0 (CVE-2022-26486)

Description
An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw.
Solution(s)
  • mozilla-thunderbird-upgrade-91_6_2


  • References
  • https://attackerkb.com/topics/cve-2022-26486
  • CVE - 2022-26486
  • http://www.mozilla.org/security/announce/2022/mfsa2022-09.html




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore