Security Advisory

CVE-2019-11713

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-07-23 13:18:51
Last updated 2024-08-04 23:03:32
Assigner mozilla
State PUBLISHED

Description

A use-after-free vulnerability can occur in HTTP/2 when a cached HTTP/2 stream is closed while still in use, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.