CVE-2020-26960 - log back

CVE-2020-26960 edited at 17 Nov 2020 18:29:45
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
Description
+ A security issue has been found in Firefox before 83.0 where, if the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash.
References
+ https://www.mozilla.org/en-US/security/advisories/mfsa2020-50/#CVE-2020-26960
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1670358
Notes
CVE-2020-26960 created at 17 Nov 2020 18:15:06