VDB

GCVE-110-MAGEIA-2022-94

GCVE-110-MAGEIA-2022-94
Advisory Published
Vulnetix · Advisory published March 8, 2022
Removing an XSLT parameter during processing could have lead to an exploitable use-after-free (CVE-2022-26485). An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape (CVE-2022-26486).

Affected Products

VendorProductVersionsPlatforms
Mageiathunderbird-l10n0 (affected), 91.6.2-1.mga8 (unaffected), 0 (affected), 91.6.2-1.mga8 (unaffected)
Mageiagcc0 (affected), 10.4.0-2.mga8 (unaffected)
Mageiathunderbird0 (affected), 91.6.2-1.mga8 (unaffected), 0 (affected), 91.6.2-1.mga8 (unaffected)

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›