Note:
This project will be discontinued after December 13, 2021. [more]
2020-08-10
JIT optimizations involving the Javascript arguments object could confuse later optimizations. This risk was already mitigated by various precautions in the code, resulting in this bug rated at only moderate severity. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
Products | Ubuntu_linux, Firefox, Firefox_esr, Thunderbird, Leap |
Type | Access of Resource Using Incompatible Type ('Type Confusion') (CWE-843) |
First patch | - None (likely due to unavailable code) |
Links |
• https://www.mozilla.org/security/advisories/mfsa2020-33/
• https://www.mozilla.org/security/advisories/mfsa2020-30/ • http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00025.html • https://bugzilla.mozilla.org/show_bug.cgi?id=1647293 • https://usn.ubuntu.com/4443-1/ |