Related Vulnerabilities: CVE-2019-11752  

In Firefox before 69.0, it is possible to delete an IndexedDB key value and subsequently try to extract it during conversion. This results in a use-after-free and a potentially exploitable crash.

Severity High

Remote Yes

Type Arbitrary code execution

Description

In Firefox before 69.0, it is possible to delete an IndexedDB key value and subsequently try to extract it during conversion. This results in a use-after-free and a potentially exploitable crash.

AVG-1036 firefox 68.0.2-1 69.0-1 High Fixed

https://www.mozilla.org/en-US/security/advisories/mfsa2019-25/#CVE-2019-11752
https://bugzilla.mozilla.org/show_bug.cgi?id=1501152