Spidermonkey: Multiple Vulnerabilities Multiple vulnerabilities have been discovered in Spidermonkey, the worst of which could lead to arbitrary code execution. spidermonkey 2024-12-08 2024-12-08 935552 936217 937469 941176 local and remote 115.15.0 115.15.0

SpiderMonkey is Mozilla’s JavaScript and WebAssembly Engine, used in Firefox, Servo and various other projects. It is written in C++, Rust and JavaScript. You can embed it into C++ and Rust projects, and it can be run as a stand-alone shell.

Multiple vulnerabilities have been discovered in Spidermonkey. Please review the CVE identifiers referenced below for details.

Please review the referenced CVE identifiers for details.

There is no known workaround at this time.

All Spidermonkey users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-lang/spidermonkey-115.15.0:115"
CVE-2024-5693 CVE-2024-5696 CVE-2024-5700 CVE-2024-6601 CVE-2024-6602 CVE-2024-6603 CVE-2024-6604 CVE-2024-7518 CVE-2024-7519 CVE-2024-7520 CVE-2024-7521 CVE-2024-7522 CVE-2024-7523 CVE-2024-7524 CVE-2024-7525 CVE-2024-7526 CVE-2024-7527 CVE-2024-7528 CVE-2024-7529 CVE-2024-7531 CVE-2024-8381 CVE-2024-8382 CVE-2024-8383 CVE-2024-8384 CVE-2024-8385 CVE-2024-8386 CVE-2024-8387 CVE-2024-8389 CVE-2024-8394 MFSA-2024-25 MFSA-2024-26 MFSA-2024-28 MFSA2024-29 MFSA2024-30 MFSA2024-31 MFSA2024-33 MFSA2024-34 MFSA2024-35 MFSA2024-38 MFSA2024-39 MFSA2024-40 MFSA2024-41 MFSA2024-43 MFSA2024-44 graaff graaff