In Firefox before 69.0, it is possible to delete an IndexedDB key value and subsequently try to extract it during conversion. This results in a use-after-free and a potentially exploitable crash.
In Firefox before 69.0, it is possible to delete an IndexedDB key value and subsequently try to extract it during conversion. This results in a use-after-free and a potentially exploitable crash.
https://www.mozilla.org/en-US/security/advisories/mfsa2019-25/#CVE-2019-11752 https://bugzilla.mozilla.org/show_bug.cgi?id=1501152