U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2024-4367

Change History

Initial Analysis by NIST 1/22/2025 12:16:51 PM

Action Type Old Value New Value
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
NIST NVD-CWE-noinfo
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:* versions up to (excluding) 115.11.0
     *cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:* versions up to (excluding) 126.0
     *cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* versions up to (excluding) 115.11.0
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:*:*:*:*:*:*:*:* versions up to (excluding) 7.10.6
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:-:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision10:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision11:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision12:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision13:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision14:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision15:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision16:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision17:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision18:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision19:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision20:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision21:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision22:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision23:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision24:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision25:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision26:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision27:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision28:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision29:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision3:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision30:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision31:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision32:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision33:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision34:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision35:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision36:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision37:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision38:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision39:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision4:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision40:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision41:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision42:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision43:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision44:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision5:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision6:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision7:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision8:*:*:*:*:*:*
     *cpe:2.3:a:open-xchange:open-xchange_appsuite_frontend:7.10.6:revision9:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
Changed Reference Type
http://seclists.org/fulldisclosure/2024/Aug/30 No Types Assigned
http://seclists.org/fulldisclosure/2024/Aug/30 Mailing List
Changed Reference Type
https://bugzilla.mozilla.org/show_bug.cgi?id=1893645 No Types Assigned
https://bugzilla.mozilla.org/show_bug.cgi?id=1893645 Issue Tracking
Changed Reference Type
https://bugzilla.mozilla.org/show_bug.cgi?id=1893645 No Types Assigned
https://bugzilla.mozilla.org/show_bug.cgi?id=1893645 Issue Tracking
Changed Reference Type
https://lists.debian.org/debian-lts-announce/2024/05/msg00010.html No Types Assigned
https://lists.debian.org/debian-lts-announce/2024/05/msg00010.html Mailing List
Changed Reference Type
https://lists.debian.org/debian-lts-announce/2024/05/msg00010.html No Types Assigned
https://lists.debian.org/debian-lts-announce/2024/05/msg00010.html Mailing List
Changed Reference Type
https://lists.debian.org/debian-lts-announce/2024/05/msg00012.html No Types Assigned
https://lists.debian.org/debian-lts-announce/2024/05/msg00012.html Mailing List
Changed Reference Type
https://lists.debian.org/debian-lts-announce/2024/05/msg00012.html No Types Assigned
https://lists.debian.org/debian-lts-announce/2024/05/msg00012.html Mailing List
Changed Reference Type
https://www.mozilla.org/security/advisories/mfsa2024-21/ No Types Assigned
https://www.mozilla.org/security/advisories/mfsa2024-21/ Vendor Advisory
Changed Reference Type
https://www.mozilla.org/security/advisories/mfsa2024-21/ No Types Assigned
https://www.mozilla.org/security/advisories/mfsa2024-21/ Vendor Advisory
Changed Reference Type
https://www.mozilla.org/security/advisories/mfsa2024-22/ No Types Assigned
https://www.mozilla.org/security/advisories/mfsa2024-22/ Vendor Advisory
Changed Reference Type
https://www.mozilla.org/security/advisories/mfsa2024-22/ No Types Assigned
https://www.mozilla.org/security/advisories/mfsa2024-22/ Vendor Advisory
Changed Reference Type
https://www.mozilla.org/security/advisories/mfsa2024-23/ No Types Assigned
https://www.mozilla.org/security/advisories/mfsa2024-23/ Vendor Advisory
Changed Reference Type
https://www.mozilla.org/security/advisories/mfsa2024-23/ No Types Assigned
https://www.mozilla.org/security/advisories/mfsa2024-23/ Vendor Advisory