VDB

BDU%3A2023-07235

BDU%3A2023-07235 PUBLISHED CVSS 10 CRITICAL

Уязвимость почтового клиента Thunderbird и браузеров Firefox, Firefox ESR, связанная с записью за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код

Risk Scores

CVSS 2.0
10

Affected Products

VendorProductVersions
MozillaThunderbirdunspecified
MozillaFirefoxunspecified
Red Hat Inc., ООО «РусБИТех-Астра», Novell Inc., Сообщество свободного программного обеспечения, Canonical Ltd., ООО «Ред Софт», АО «НТЦ ИТ РОСА», Mozilla Corp., АО «ИВК», АО "НППКТ"Red Hat Enterprise Linux, Astra Linux Special Edition (запись в едином реестре российских программ №369), OpenSUSE Leap, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, Debian GNU/Linux, openSUSE Tumbleweed, Ubuntu, SUSE CaaS Platform, Suse Linux Enterprise Server, SUSE Linux Enterprise High Performance Computing, РЕД ОС (запись в едином реестре российских программ №3751), SUSE Enterprise Storage, SUSE Linux Enterprise Module for Desktop Applications, SUSE Linux Enterprise Workstation Extension, SUSE Linux Enterprise Module for Package Hub, РОСА ХРОМ (запись в едином реестре российских программ №1607), Firefox, Firefox ESR, Thunderbird, АЛЬТ СП 10, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913)
MozillaFirefox ESRunspecified

Timeline

  • Sep 27, 2023 CVE Published
  • Sep 27, 2023 PoC Published
  • Sep 25, 2024 CVE Updated
  • Mar 19, 2026 Distribution Patch
  • Mar 19, 2026 Distribution Patch
  • Mar 19, 2026 Distribution Patch
  • Mar 19, 2026 Distribution Patch
  • Mar 19, 2026 Security Advisory
  • Mar 19, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›