A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mozilla

Published: 2018-10-18T13:00:00

Updated: 2018-10-20T09:57:01

Reserved: 2018-06-14T00:00:00


Link: CVE-2018-12386

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-10-18T13:29:06.273

Modified: 2018-12-06T18:31:35.910


Link: CVE-2018-12386

JSON object: View

cve-icon Redhat Information

No data.

CWE