Related Vulnerabilities: CVE-2019-17005  

A out-of-bounds write vulnerability has been found in Firefox before 71.0 where the plain text serializer used a fixed-size array for the number of elements it could process; however it was possible to overflow the static-sized array leading to memory corruption and a potentially exploitable crash.

Severity High

Remote Yes

Type Arbitrary code execution

Description

A out-of-bounds write vulnerability has been found in Firefox before 71.0 where the plain text serializer used a fixed-size array for the number of elements it could process; however it was possible to overflow the static-sized array leading to memory corruption and a potentially exploitable crash.

AVG-1071 firefox 70.0.1-3 71.0-1 Critical Fixed

https://www.mozilla.org/en-US/security/advisories/mfsa2019-36/#CVE-2019-17005
https://bugzilla.mozilla.org/show_bug.cgi?id=1584170