Protocol handlers `ms-cxh` and `ms-cxh-full` could have been leveraged to trigger a denial of service. *Note: This attack only affects Windows. Other operating systems are not affected.* This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.11.
Link | Tags |
---|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=1828716 | permissions required |
https://security.gentoo.org/glsa/202312-03 | |
https://security.gentoo.org/glsa/202401-10 | |
https://www.mozilla.org/security/advisories/mfsa2023-16/ | vendor advisory |
https://www.mozilla.org/security/advisories/mfsa2023-17/ | vendor advisory |
https://www.mozilla.org/security/advisories/mfsa2023-18/ | vendor advisory |