Files
CVEs-PoC/2024/CVE-2024-2608.md
T
2024-05-25 21:48:12 +02:00

1.1 KiB

CVE-2024-2608

Description

AppendEncodedAttributeValue(), ExtraSpaceNeededForAttrEncoding() and AppendEncodedCharacters() could have experienced integer overflows, causing underallocation of an output buffer leading to an out of bounds write. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.

POC

Reference

No PoCs from references.

Github