Firefox 67.0.3 released

HarborFront

Level 73
Thread author
Verified
Top Poster
Content Creator
Forum Veteran
Oct 9, 2016
6,209
23,125
7,179
Far East
Announced : June 18, 2019

Impact : critical
Products : Firefox, Firefox ESR

Fixed in
  • Firefox 67.0.3
  • Firefox ESR 60.7.1
#CVE-2019-11707: Type confusion in Array.pop

Reporter : Samuel Groß of Google Project Zero, Coinbase Security
Impact : critical

Description

A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware of targeted attacks in the wild abusing this flaw.


Get it through your internal updater


FF 67.0.3 for android get it below

 

You may also like...