VDB

GCVE-110-MAGEIA-2024-383

GCVE-110-MAGEIA-2024-383
Advisory Published
Vulnetix · Advisory published December 2, 2024
Select list elements could be shown over another site. (CVE-2024-11692) CSP Bypass and XSS Exposure via Web Compatibility Shims. (CVE-2024-11694) URL Bar Spoofing via Manipulated Punycode and Whitespace Characters. (CVE-2024-11695) Unhandled Exception in Add-on Signature Verification. (CVE-2024-11696) Improper Keypress Handling in Executable File Confirmation Dialog. (CVE-2024-11697) Memory safety bugs fixed in Firefox 133, Firefox ESR 128.5, and Thunderbird 128.5. (CVE-2024-11699)

Affected Products

VendorProductVersionsPlatforms
Mageiafirefox128.5.0-1.mga9 (unaffected), 0 (affected)
Mageiafirefox-l10n0 (affected), 128.5.0-1.mga9 (unaffected)
Mageiarootcerts0 (affected), 20241119.00-1.mga9 (unaffected)
Mageianss0 (affected), 3.107.0-1.mga9 (unaffected)

Browse GCVE Records

74,585 records in the GCVE database · Updated July 24, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›