Monday, April 11, 2022

MFSA2022-14 Firefox: Security Vulnerabilities fixed in Firefox ESR 91.8 (CVE-2022-28285)

When generating the assembly code for MLoadTypedArrayElementHole, an incorrect AliasSet was used. In conjunction with another vulnerability this could have been used for an out of bounds memory read.
  • mozilla-firefox-esr-upgrade-91_8

  • References
  • CVE - 2022-28285


    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore