#11852 closed enhancement (fixed)
firefox-66.0.1
| Reported by: | Douglas R. Reno | Owned by: | |
|---|---|---|---|
| Priority: | highest | Milestone: | 9.0 |
| Component: | BOOK | Version: | SVN |
| Severity: | normal | Keywords: | |
| Cc: |
Description
New point version
Change History (4)
comment:1 by , 7 years ago
| Priority: | normal → highest |
|---|
comment:2 by , 7 years ago
| Owner: | changed from to |
|---|---|
| Status: | new → assigned |
If anyone has stuck with the 60 esr series, that also seems to be affected - 60.6.1esr was also released.
Note:
See TracTickets
for help on using tickets.

Mozilla Foundation Security Advisory 2019-09 Security vulnerabilities fixed in Firefox 66.0.1 Announced March 22, 2019 Impact critical Products Firefox Fixed in Firefox 66.0.1 #CVE-2019-9810: IonMonkey MArraySlice has incorrect alias information Reporter Richard Zhu and Amat Cama via Trend Micro's Zero Day Initiative Impact critical Description Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. References Bug 1537924 #CVE-2019-9813: Ionmonkey type confusion with __proto__ mutations Reporter Niklas Baumstark via Trend Micro's Zero Day Initiative Impact critical Description Incorrect handling of __proto__ mutations may lead to type confusion in IonMonkey JIT code and can be leveraged for arbitrary memory read and write. References Bug 1538006Two urgent zero days reported. This is an emergency release to fix them.
Seems to affect previous versions of Firefox as well. I highly recommend updating to 66.0.1 if you're on 63.x+