The Foundation of Mozilla released Firefox version 66 and 60.6 of as for Firefox Extended Support Release, in the method fixing twenty two flaws between them, five of them serious. Four of the five most critical vulnerabilities were discovered in both the standard and Extended Support Release versions of the web browser.

This includes CVE-2019-9790, a use-after-free flaw that can happen when eliminating in-use Document Object Model components. Hackers can accomplish this scenario, which was identified by analyst Brandon Wieser, to deliberately reason a crash.

Two extra shared serious flaws were identified in the IonMonkey JavaScript JIT program for SpiderMonkey. The initial one is a sort of confusion vulnerability as CVE-2019-9791, can enable absolute writing and reading of aims while an effort crash. Another one is CVE-2019-9792, contains a magical leaking of worth to the functioning script, which can be advantaged to causing memory putridness and finally a crash. Samuel Groß of Google Project Zero is advantage with observing both of these matters.

The ultimate shared critical flaw included a series of memory safety vulnerability CVE-2019-9788 exposed developers and community of Mozilla. The other fixed of memory safety vulnerabilities were merely detected in the standard Firefox version CVE-2019-9789.

The last Firefox versions and Firefox Extended Support Release merely shared an extra four high-level vulnerabilities, and one average-level flaw. Extended Support Release merely had one of its very own average flaws fixed, while the updated standard version patched an extra four-average level and four low-level vulnerabilities.

Leave a Reply

Your email address will not be published. Required fields are marked *