CVE-2024-9680

high KEV
Published 2024-10-10 · Modified 2024-11-18
CVSS v3
CVSS v2
VIR risk
9.5

Description

Important: firefox security update

CISA KEV

Vendor
Mozilla
Product
Firefox
Due date
2024-11-05

Predictions

Exploit likelihood
99%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/9/ALSA-2024-9554.html

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/9/ALSA-2024-9552.html

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322444

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322440

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322439

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322438

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322434

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322433

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322429

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322428

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322425

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2322424

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/9/ALSA-2024-7958.html

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/9/ALSA-2024-8025.html

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/8/ALSA-2024-8024.html

vendor Authored 2026-05-27

Vendor advisory: alma — https://access.redhat.com/errata/RHSA-2024:8024

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/8/ALSA-2024-7977.html

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2317442

vendor Authored 2026-05-27

Vendor advisory: alma — https://access.redhat.com/errata/RHSA-2024:7977

vendor Authored 2026-05-27

Vendor advisory: cisa-kev — https://www.mozilla.org/en-US/security/advisories/mfsa2024-51/ ; https://nvd.nist.gov/vuln/detail/CVE-2024-9680

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2024:8025

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2024:7958

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2024-9680.html

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2024-9680

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2024:8024

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2024:7977

vendor Authored 2026-05-27

Vendor advisory: redhat — https://access.redhat.com/errata/RHSA-2024:9554

vendor Authored 2026-05-27

Vendor advisory: redhat — https://access.redhat.com/errata/RHSA-2024:9552

vendor Authored 2026-05-27

Vendor advisory: redhat — https://access.redhat.com/errata/RHSA-2024:8025

vendor Authored 2026-05-27

Vendor advisory: redhat — https://access.redhat.com/errata/RHSA-2024:7958

Exploits

OS impact

OSVersionStatusFixed in
redhat rhel9fixed
rockylinux rocky8fixed
debian debiansidfixed131.0.2-1
debian debianbookwormfixed128.3.1esr-1~deb12u1
debian debianbullseyefixed128.3.1esr-1~deb11u1
debian debianforkyfixed128.3.1esr-1
debian debiantrixiefixed128.3.1esr-1
suse slesaffected
rockylinux rocky9fixed

References

Verify integrity in audit chain (admin only). AS-IS.