Netskope Threat Labs

BROWSER-FIREFOX WebAudio stack buffer overflow exploit attempted

IPS-CFWIPS-SWG

1 SID: 170108

Detects web content that exploits CVE-2024-0745, a stack buffer overflow in Firefox's WebAudio implementation that can allow code execution. The rule matches an offline audio context with an oscillator that starts and stops at crafted sample offsets, the pattern public exploits use to corrupt the stack.