CVE-2023-4582

Source
https://cve.org/CVERecord?id=CVE-2023-4582
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-4582.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-4582
Downstream
Related
Published
2023-09-11T09:15:09.617Z
Modified
2026-03-14T14:55:41.276881Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Due to large allocation checks in Angle for glsl shaders being too lenient a buffer overflow could have occurred when allocating too much private shader memory on mac OS. This bug only affects Firefox on macOS. Other operating systems are unaffected. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-4582.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "117.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "115.2"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "115.2"
            }
        ]
    }
]