Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-9796
HistoryApr 26, 2019 - 5:29 p.m.

Design/Logic Flaw

2019-04-2617:29:00
PRIOn knowledge base
www.prio-n.com
7

8.9 High

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

82.5%

A use-after-free vulnerability can occur when the SMIL animation controller incorrectly registers with the refresh driver twice when only a single registration is expected. When a registration is later freed with the removal of the animation controller element, the refresh driver incorrectly leaves a dangling pointer to the driver’s observer array. This vulnerability affects Thunderbird < 60.6, Firefox ESR < 60.6, and Firefox < 66.