Related Vulnerabilities: CVE-2019-5785  

An integer overflow issue has been found in the Skia component of firefox before 65.0.1 and thunderbird before 60.5.1.

Severity High

Remote Yes

Type Arbitrary code execution

Description

An integer overflow issue has been found in the Skia component of firefox before 65.0.1 and thunderbird before 60.5.1.

AVG-908 thunderbird 60.5.0-1 60.5.1-1 Critical Fixed

AVG-896 firefox 65.0-2 65.0.1-1 High Fixed

20 Feb 2019 ASA-201902-23 AVG-908 thunderbird Critical multiple issues

13 Feb 2019 ASA-201902-16 AVG-896 firefox High multiple issues

https://www.mozilla.org/en-US/security/advisories/mfsa2019-04/#CVE-2019-5785
https://www.mozilla.org/en-US/security/advisories/mfsa2019-06/#CVE-2019-5785
https://bugzilla.mozilla.org/show_bug.cgi?id=1525433
https://googleprojectzero.blogspot.com/2019/02/the-curious-case-of-convexity-confusion.html