CVE-2019-17013: Use After Free
Last updated 24 July 2024
Other sources
Mozilla developers and community members Philipp, Diego Calleja, Mikhail Gavrilov, Jason Kratzer, Christian Holler, Markus Stange, Tyson Smith reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 71.
— Launchpad
Affected Software
Remediation
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2019-17013?
CVE-2019-17013 is a memory safety bug present in Firefox 70.
What is the severity of CVE-2019-17013?
CVE-2019-17013 has a severity level of 8.8, which is considered high.
How can I fix CVE-2019-17013?
To fix CVE-2019-17013, you should update your Firefox browser to version 71.0 or above.
Are there any references for CVE-2019-17013?
Yes, you can find more information about CVE-2019-17013 in the following references: [Bugzilla](https://bugzilla.mozilla.org/buglist.cgi?bug_id=1298509%2C1472328%2C1577439%2C1577937%2C1580320%2C1584195%2C1585106%2C1586293%2C1593865%2C1594181), [Mozilla Security Advisories MFSA2019-36](https://www.mozilla.org/en-US/security/advisories/mfsa2019-36/)
What is the Common Weakness Enumeration (CWE) for CVE-2019-17013?
The Common Weakness Enumeration (CWE) for CVE-2019-17013 is CWE-416 and CWE-787.