Due to a missing case handling object types, a type confusion vulnerability could occur, resulting in a crash. We presume that with enough effort that it could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published: 2020-01-08T21:27:36

Updated: 2024-08-05T01:24:48.752Z

Reserved: 2019-09-30T00:00:00

Link: CVE-2019-17017

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-01-08T22:15:12.357

Modified: 2020-01-13T20:15:12.187

Link: CVE-2019-17017

cve-icon Redhat

Severity : Important

Publid Date: 2020-01-07T00:00:00Z

Links: CVE-2019-17017 - Bugzilla