Memory safety bugs present in Firefox 118. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 119.
Errores de seguridad de la memoria presentes en Firefox 118. Algunos de estos errores mostraron evidencia de corrupción de la memoria y suponemos que con suficiente esfuerzo algunos de ellos podrían haberse aprovechado para ejecutar código arbitrario. Esta vulnerabilidad afecta a Firefox < 119.
This update for MozillaFirefox fixes the following issues. Updated to version 115.4.0 ESR. Fixed a potential clickjack via queued up rendering. Fixed a cross-Origin size and header leakage. Fixed unexpected errors when handling invalid cookie characters. Fixed a crash due to a large WebGL draw. Fixed an issue where WebExtensions could open arbitrary URLs. Fixed an issue where fullscreen notifications would be obscured by file the open dialog on macOS. Fixed a download protection bypass on on Windows. Fixed a crash caused by improper object tracking during GC in the JavaScript engine. Fixed an issue where fullscreen notifications would be obscured by WebAuthn prompts. Fixed multiple memory safety issues. Fixed multiple memory safety issues.