CVE-2018-18356 - log back

CVE-2018-18356 created at 25 Sep 2019 19:31:40
Severity
+ High
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ A use-after-free has been found in the Skia component of chromium before 71.0.3578.80 and firefox before 65.0.1 and thunderbird before 60.5.1.
References
+ https://chromereleases.googleblog.com/2018/12/stable-channel-update-for-desktop.html
+ https://bugs.chromium.org/p/chromium/issues/detail?id=883666
+ https://www.mozilla.org/en-US/security/advisories/mfsa2019-04/#CVE-2018-18356
+ https://www.mozilla.org/en-US/security/advisories/mfsa2019-06/#CVE-2018-18356
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1525817
Notes