Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Ubuntu USN |
USN-7134-1 | Firefox vulnerabilities |
Fri, 04 Apr 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* |
Wed, 27 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mozilla
Mozilla firefox Mozilla thunderbird |
|
| Weaknesses | CWE-362 | |
| CPEs | cpe:2.3:a:mozilla:firefox:-:*:*:*:*:*:*:* cpe:2.3:a:mozilla:thunderbird:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Mozilla
Mozilla firefox Mozilla thunderbird |
|
| Metrics |
cvssV3_1
|
ssvc
|
Wed, 27 Nov 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | firefox: thunderbird: Data race with PlaybackParams | |
| Weaknesses | CWE-820 | |
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Tue, 26 Nov 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing thread synchronization primitives could have led to a data race on members of the PlaybackParams structure. This vulnerability affects Firefox < 133 and Thunderbird < 133. | |
| References |
|
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-11-27T15:10:55.501Z
Reserved: 2024-11-25T16:29:49.677Z
Link: CVE-2024-11708
Updated: 2024-11-27T15:10:37.578Z
Status : Analyzed
Published: 2024-11-26T14:15:20.173
Modified: 2025-04-04T16:27:07.540
Link: CVE-2024-11708
OpenCVE Enrichment
No data.
Ubuntu USN