Security Advisory

CVE-2020-6820

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-04-24 15:56:04
Last updated 2025-10-21 23:35:45
Assigner mozilla
State PUBLISHED

Description

Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Thunderbird < 68.7.0, Firefox < 74.0.1, and Firefox ESR < 68.6.1.