Tracker / CVE-2019-11694
CVE-2019-11694
High 7.5
A vulnerability exists in the Windows sandbox where an uninitialized value in memory can be leaked to a renderer from a broker when making a call to access an otherwise unavailable file. This results in the potential leaking of information stored at that memory location. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.
Affected products and versions
| mozilla | firefox · … → 60.7.0 |
|---|---|
| mozilla | firefox · … → 67.0 |
| mozilla | thunderbird · … → 60.7.0 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.