VYPR
Unrated severityNVD Advisory· Published Sep 11, 2023· Updated Dec 18, 2025

Memory corruption in JIT UpdateRegExpStatics

CVE-2023-4577

Description

When UpdateRegExpStatics attempted to access initialStringHeap it could already have been garbage collected prior to entering the function, which could potentially have led to an exploitable crash. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2.

Affected products

34

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.