GHSA-436h-cr23-m9m7
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
Freeing arbitrary <code>nsIInputStream</code>'s on a different thread than creation could have led to a use-after-free and potentially exploitable crash. This vulnerability affects Firefox ESR < 102.5, Thunderbird < 102.5, and Firefox < 107.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: June 12, 2025 6:24 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.