VDB

GCVE-VVD-MAGEIA-2023-342

GCVE-VVD-MAGEIA-2023-342
Advisory Published
Vulnetix · Advisory published December 8, 2023
The updated packages fix security vulnerabilities. Out-of-bound memory access in WebGL2 blitFramebuffer. (CVE-2023-6204) Use-after-free in MessagePort::Entangled. (CVE-2023-6205) Clickjacking permission prompts using the fullscreen transition. (CVE-2023-6206) Use-after-free in ReadableByteStreamQueueEntry::Buffer. (CVE-2023-6207) Using Selection API would copy contents into X11 primary selection. (CVE-2023-6208) Incorrect parsing of relative URLs starting with "///". (CVE-2023-6209) Memory safety bugs fixed in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. (CVE-2023-6212)

Affected Products

VendorProductVersionsPlatforms
Mageiarootcerts0 (affected), 20231116.00-1.mga9 (unaffected)
Mageianss0 (affected), 3.95.0-1.mga9 (unaffected)
Mageiafirefox0 (affected), 115.5.0-3.mga9 (unaffected)
Mageiafirefox-l10n0 (affected), 115.5.0-1.mga9 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›