A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 60.7.1, Firefox < 67.0.3, and Thunderbird < 60.7.2.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Aug 2024 00:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: mozilla
Published: 2019-07-23T13:20:17
Updated: 2024-08-04T23:03:32.447Z
Reserved: 2019-05-03T00:00:00
Link: CVE-2019-11707
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-07-23T14:15:15.233
Modified: 2024-11-21T04:21:38.033
Link: CVE-2019-11707
Redhat