If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.
2020-12-09T01:15:13.223
2024-11-21T05:20:34.993
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mozilla | firefox | < 83.0 | Yes |
Application | mozilla | firefox_esr | < 78.5 | Yes |
Application | mozilla | thunderbird | < 78.5 | Yes |