CVE-2020-26974 log
| Source | 
							
  | 
					
| Severity | High | 
| Remote | Yes | 
| Type | Arbitrary code execution | 
| Description | A security issue was found in Firefox before 84.0 and Thunderbird before 78.6. When flex-basis was used on a table wrapper, a StyleGenericFlexBasis object could have been incorrectly cast to the wrong type. This resulted in a heap user-after-free, memory corruption, and a potentially exploitable crash.  | 
					
| Group | Package | Affected | Fixed | Severity | Status | Ticket | 
|---|---|---|---|---|---|---|
| AVG-1362 | firefox | 83.0-2 | 84.0-1 | High | Fixed | |
| AVG-1315 | thunderbird | 78.5.0-1 | 78.6.0-1 | High | Fixed | FS#68853 | 
| Date | Advisory | Group | Package | Severity | Type | 
|---|---|---|---|---|---|
| 16 Dec 2020 | ASA-202012-25 | AVG-1362 | firefox | High | multiple issues | 
| 16 Dec 2020 | ASA-202012-23 | AVG-1315 | thunderbird | High | multiple issues |