Thunderbird, Firefox ESR, and Firefox are vulnerable to use-after-free vulnerability. Transaction processing in the editor during design mode interactions may result in a potentially exploitable crash leading to denial of service.
www.securityfocus.com/bid/97940
www.securitytracker.com/id/1038320
access.redhat.com/errata/RHSA-2017:1104
access.redhat.com/errata/RHSA-2017:1106
access.redhat.com/errata/RHSA-2017:1201
access.redhat.com/security/cve/CVE-2016-10195
access.redhat.com/security/cve/CVE-2016-10196
access.redhat.com/security/cve/CVE-2016-10197
access.redhat.com/security/updates/classification/#critical
bugzilla.mozilla.org/show_bug.cgi?id=1350683
bugzilla.redhat.com/show_bug.cgi?id=1443326
www.debian.org/security/2017/dsa-3831
www.mozilla.org/en-US/security/advisories/mfsa2017-08
www.mozilla.org/security/advisories/mfsa2017-10/
www.mozilla.org/security/advisories/mfsa2017-11/
www.mozilla.org/security/advisories/mfsa2017-12/
www.mozilla.org/security/advisories/mfsa2017-13/