Where did you install Firefox from? Help Mozilla uncover 3rd party websites that offer problematic Firefox installation by taking part in our campaign. There will be swag, and you'll be featured in our blog if you manage to report at least 10 valid reports!

Mozilla 도움말 검색

고객 지원 사기를 피하세요. 저희는 여러분께 절대로 전화를 걸거나 문자를 보내거나 개인 정보를 공유하도록 요청하지 않습니다. "악용 사례 신고"옵션을 사용하여 의심스러운 활동을 신고해 주세요.

Learn More

does the CVE-2023-4863 apply to the android app? and if it does, was it fixed?

  • 9 답장
  • 0 이 문제를 만남
  • 1 보기
  • 최종 답변자: faj

more options

does the CVE-2023-4863 (Heap buffer overflow in libwebp) apply to the android app? and if it does, was it fixed?

does the CVE-2023-4863 (Heap buffer overflow in libwebp) apply to the android app? and if it does, was it fixed?

선택된 해결법

Hi

I have had confirmation back from Mozilla staff.

This was an issue in Firefox for Android, but it was fixed on 12th September. The advisory for this can be seen at https://www.mozilla.org/en-US/security/advisories/mfsa2023-40/

문맥에 따라 이 답변을 읽어주세요 👍 0

모든 댓글 (9)

more options

Hi

Let me check that with Mozilla staff and I will get back to you.

more options

Okay thank you, im on version 117.1.0 btw

more options

Also i find if weird, is the newest version actually 117.1.0? Cause in android relase notes i see that 117.0 is the newest and in general relase notes it says 117.0.1 is the newest

more options

It doesn't contain libwebp, so it should be safe.

more options

I see, do you know if this applies to all android browsers or just firefox?

more options

faj said

I see, do you know if this applies to all android browsers or just firefox?

I don't know.

more options

I see, thanks for the anwser and i can sleep peacefully

more options

선택된 해결법

Hi

I have had confirmation back from Mozilla staff.

This was an issue in Firefox for Android, but it was fixed on 12th September. The advisory for this can be seen at https://www.mozilla.org/en-US/security/advisories/mfsa2023-40/

more options

Paul said

but it was fixed on 12th September.

You the link you sent says it got fixed in 117.0.1, but play store says 12 september there was 117.1.0, is it correct or did something with the updated break for me?