Severity
High
Analysis Summary
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash.
Impact
Arbitrary code execution.
Affected Vendors
Mozilla
Affected Products
- Firefox
- Firefox ESR
Remediation
Update to fixed versions.
- Firefox 67.0.3
- Firefox ESR 60.7.1