PT-2019-5149 · Mozilla+2 · Firefox+2

Cosmin Sabou

+3

·

Published

2019-09-03

·

Updated

2024-12-12

·

CVE-2019-11734

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 69
Description The issue is related to a buffer overflow due to unverified input data. This could allow a remote attacker to gain unauthorized access to information and compromise its integrity and availability. There are memory safety bugs present, some of which show evidence of memory corruption, and it is presumed that these could be exploited to run arbitrary code.
Recommendations For versions prior to 69, update to version 69 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive information until the update is applied.

Fix

Memory Corruption

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-2686
ALT-PU-2020-1617
ALT-PU-2020-2408
ALT-PU-2020-2933
ALT-PU-2021-1368
BDU:2020-01819
CVE-2019-11734
OPENSUSE-SU-2024:10600-1
OPENSUSE-SU-2024:14572-1
USN-4122-1
USN-4122-2

Affected Products

Alt Linux
Firefox
Ubuntu